elsa-2026-50254

oracle_linux
Description

[6.12.0-201.74.2.2] - crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl (Herbert Xu) [Orabug: 39292190] - crypto: authencesn - Fix src offset when decrypting in-place (Herbert Xu) [Orabug: 39292190] - crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption (Herbert Xu) [Orabug: 39292190] - crypto: authenc - use memcpy_sglist() instead of null skcipher (Eric Biggers) [Orabug: 39292190] - crypto: algif_aead - snapshot IV for async AEAD requests (Douya Le) [Orabug: 39292190] - crypto: algif_aead - Revert to operating out-of-place (Herbert Xu) [Orabug: 39292190] {CVE-2026-31431} - crypto: algif_aead - use memcpy_sglist() instead of null skcipher (Eric Biggers) [Orabug: 39292190] - crypto: scatterwalk - Backport memcpy_sglist() (Eric Biggers) [Orabug: 39292190] - uek-rpm: Enable FWCTL modules for aarch64 (Dave Kleikamp) [Orabug: 39292173] - uek-rpm: CONFIG_INTEL_IOMMU_SCALABLE_MODE_DEFAULT_ON should be set (Dave Kleikamp) [Orabug: 39292151] - x86/CPU: Fix FPDSS on Zen1 (Borislav Petkov (AMD)) [Orabug: 39292145]

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cves": [
    "CVE-2026-31431"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "[6.12.0-201.74.2.2]\n- crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl (Herbert Xu)  [Orabug: 39292190] \n- crypto: authencesn - Fix src offset when decrypting in-place (Herbert Xu)  [Orabug: 39292190] \n- crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption (Herbert Xu)  [Orabug: 39292190] \n- crypto: authenc - use memcpy_sglist() instead of null skcipher (Eric Biggers)  [Orabug: 39292190] \n- crypto: algif_aead - snapshot IV for async AEAD requests (Douya Le)  [Orabug: 39292190] \n- crypto: algif_aead - Revert to operating out-of-place (Herbert Xu)  [Orabug: 39292190]  {CVE-2026-31431}\n- crypto: algif_aead - use memcpy_sglist() instead of null skcipher (Eric Biggers)  [Orabug: 39292190] \n- crypto: scatterwalk - Backport memcpy_sglist() (Eric Biggers)  [Orabug: 39292190] \n- uek-rpm: Enable FWCTL modules for aarch64 (Dave Kleikamp)  [Orabug: 39292173] \n- uek-rpm: CONFIG_INTEL_IOMMU_SCALABLE_MODE_DEFAULT_ON should be set (Dave Kleikamp)  [Orabug: 39292151] \n- x86/CPU: Fix FPDSS on Zen1 (Borislav Petkov (AMD))  [Orabug: 39292145]",
  "id": "ELSA-2026-50254",
  "ovalId": "oval:com.oracle.elsa:def:202650254",
  "source": "oracle_linux",
  "title": "ELSA-2026-50254: Unbreakable Enterprise kernel security update: Copy Fail (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2026-50254.html"
}
View JSON API Download JSON