In the Linux kernel, the following vulnerability has been resolved:
netfilter: nfnetlink_log: account for netlink header size
This is a followup to an old bug fix: NLMSG_DONE needs to account
for the netlink header size, not just the attribute size.
This can result in a WARN splat + drop of the netlink message,
but other than this there are no ill effects.
CVE-2026-31416
NONE
EPSS 0.03%
Updated Apr 18, 2026
Linux
https://git.kernel.org/stable/c/09883bf257f4243ed5a1fd35078ec6f0d0f3696a
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/4ec216410fac9de83c99177a160ebb8d42fad075
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/607245c4dbb86d9a10dd8388da0fb82170a99b61
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/6b419700e459fbf707ca1543b7c1b57a60fedb73
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/6d52a4a0520a6696bdde51caa11f2d6821cd0c01
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/761b45c661af48da6a065868d59ab1e1f64fd9b6
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/88a8f56e6276f616baad4274c6b8e4683e26e520
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/f08ffa3e1c8e36b6131f69c5eb23700c28cbd262
416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVE Details
CVE ID
CVE-2026-31416
Published Date
Apr 13, 2026
Vendor
Linux
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.03%
Likelihood of exploitation in next 30 days
Percentile:
9.3th percentile (higher than 9.3% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory