elsa-2026-50255

oracle_linux
Description

[5.4.17-2136.354.4.2] - crypto: algif_aead - Fix minimum RX size check for decryption (Herbert Xu) [Orabug: 39292250] - crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl (Herbert Xu) [Orabug: 39292250] - crypto: authencesn - Fix src offset when decrypting in-place (Herbert Xu) [Orabug: 39292250] - crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption (Herbert Xu) [Orabug: 39292250] - crypto: authenc - use memcpy_sglist() instead of null skcipher (Eric Biggers) [Orabug: 39292250] - crypto: algif_aead - snapshot IV for async AEAD requests (Douya Le) [Orabug: 39292250] - crypto: algif_aead - Revert to operating out-of-place (Herbert Xu) [Orabug: 39292250] - crypto: algif_aead - use memcpy_sglist() instead of null skcipher (Eric Biggers) [Orabug: 39292250] {CVE-2026-31431} - crypto: scatterwalk - Backport memcpy_sglist() (Eric Biggers) [Orabug: 39292250] - crypto: doc - fix kernel-doc notation in chacha.c and af_alg.c (Randy Dunlap) [Orabug: 39292250] - x86/CPU: Fix FPDSS on Zen1 (Siddh Raman Pant) [Orabug: 39292236]

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cves": [
    "CVE-2026-31431"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "[5.4.17-2136.354.4.2]\n- crypto: algif_aead - Fix minimum RX size check for decryption (Herbert Xu)  [Orabug: 39292250] \n- crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl (Herbert Xu)  [Orabug: 39292250] \n- crypto: authencesn - Fix src offset when decrypting in-place (Herbert Xu)  [Orabug: 39292250] \n- crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption (Herbert Xu)  [Orabug: 39292250] \n- crypto: authenc - use memcpy_sglist() instead of null skcipher (Eric Biggers)  [Orabug: 39292250] \n- crypto: algif_aead - snapshot IV for async AEAD requests (Douya Le)  [Orabug: 39292250] \n- crypto: algif_aead - Revert to operating out-of-place (Herbert Xu)  [Orabug: 39292250] \n- crypto: algif_aead - use memcpy_sglist() instead of null skcipher (Eric Biggers)  [Orabug: 39292250]  {CVE-2026-31431}\n- crypto: scatterwalk - Backport memcpy_sglist() (Eric Biggers)  [Orabug: 39292250] \n- crypto: doc - fix kernel-doc notation in chacha.c and af_alg.c (Randy Dunlap)  [Orabug: 39292250] \n- x86/CPU: Fix FPDSS on Zen1 (Siddh Raman Pant)  [Orabug: 39292236]",
  "id": "ELSA-2026-50255",
  "ovalId": "oval:com.oracle.elsa:def:202650255",
  "source": "oracle_linux",
  "title": "ELSA-2026-50255: Unbreakable Enterprise kernel security update: Copy Fail (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2026-50255.html"
}
View JSON API Download JSON