Zum Inhalt springen
Auto-CTI
Zurück zu allen Deep Dives
TENABLE BLOG

Copy Fail (CVE-2026-31431): Frequently asked questions about Linux kernel privilege escalation vulnerability

KEV CRITICAL Canonical CVE-2026-31431 Linux kernel privilege escalation Copy Fail

Strategische Zusammenfassung

Tenable-Analyse zu Linux Kernel Privilege Escalation (Copy Fail / CVE-2026-31431) mit Bezug zu älteren verwandten CVEs (CVE-2016-5195, CVE-2022-0847); direkt relevant für Ubuntu 24.04 LTS-Deployments im Unternehmen.

Relevanz für dich

This is a new Linux kernel privilege escalation vulnerability (Copy Fail) that affects Ubuntu and Debian systems in the company's tech stack.

Volltext

Copy Fail (CVE-2026-31431): Linux Kernel Privilege Escalation FAQ | Tenable®

  • Tenable Cloud Security (CNAPP) Page.

Thank you for your interest in Tenable Patch Management. A representative will be in touch soon.

%3A%20Linux%20Kernel%20Privilege%20Escalation%20FAQ%20%7C%20Tenable%C2%AE&p=https%3A%2F%2Fwww.tenable.com%2Fblog%2Fcopy-fail-cve-2026-31431-frequently-asked-questions-about-linux-kernel-privilege-escalation&r=<=811&evt=pageLoad&sv=2&cdb=AQAS&rn=32239)

Erwähnte CVEs

Risk Score

100
cvss base
78.00
kev bonus
20.00
epss bonus
10.00
poc bonus
0.00
raw before weight
108.00
industry weight
1.30
freshness factor
1.00
days old
0.00

Pfad: operational

MITRE ATT&CK Mapping

1 TTP
Recon
Resource Dev
Initial Access
Execution
Persistence
Def. Evasion
Cred. Access
Discovery
Lateral Mov.
Collection
C2
Exfiltration
Impact
Conf.: high medium low

Procedure-Details

Technik Tactic Procedure Conf. Quelle
T1068
Exploitation for Privilege Escalation
Privilege Escalation CVE-2026-31431 is a Linux kernel vulnerability exploited for local privilege escalation, similar in nature to prior Linux kernel privilege escalation vulnerabilities CVE-2016-5195 (Dirty COW) and CVE-2022-0847 (Dirty Pipe), allowing attackers to gain elevated privileges on affected systems. high llm
ESC