netfilter: nfnetlink_log: account for netlink header size
Summary
| CVE | CVE-2026-31416 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-04-13 14:16:10 UTC |
| Updated | 2026-07-14 13:18:39 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_log: account for netlink header size This is a followup to an old bug fix: NLMSG_DONE needs to account for the netlink header size, not just the attribute size. This can result in a WARN splat + drop of the netlink message, but other than this there are no ill effects. |
Risk And Classification
Primary CVSS: v3.1 5.5 MEDIUM from [email protected]
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS: 0.000320000 probability, percentile 0.092520000 (date 2026-04-21)
Problem Types: NVD-CWE-noinfo
CVSS v3.1 Breakdown
Attack Vector
LocalAttack Complexity
LowPrivileges Required
LowUser Interaction
NoneScope
UnchangedConfidentiality
NoneIntegrity
NoneAvailability
HighCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Linux | Linux Kernel | All | All | All | All |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected 9dfa1dfe4d5e5e66a991321ab08afe69759d797a 4ec216410fac9de83c99177a160ebb8d42fad075 git | Not specified |
| CNA | Linux | Linux | affected 9dfa1dfe4d5e5e66a991321ab08afe69759d797a 09883bf257f4243ed5a1fd35078ec6f0d0f3696a git | Not specified |
| CNA | Linux | Linux | affected 9dfa1dfe4d5e5e66a991321ab08afe69759d797a 761b45c661af48da6a065868d59ab1e1f64fd9b6 git | Not specified |
| CNA | Linux | Linux | affected 9dfa1dfe4d5e5e66a991321ab08afe69759d797a 607245c4dbb86d9a10dd8388da0fb82170a99b61 git | Not specified |
| CNA | Linux | Linux | affected 9dfa1dfe4d5e5e66a991321ab08afe69759d797a 6b419700e459fbf707ca1543b7c1b57a60fedb73 git | Not specified |
| CNA | Linux | Linux | affected 9dfa1dfe4d5e5e66a991321ab08afe69759d797a 88a8f56e6276f616baad4274c6b8e4683e26e520 git | Not specified |
| CNA | Linux | Linux | affected 9dfa1dfe4d5e5e66a991321ab08afe69759d797a f08ffa3e1c8e36b6131f69c5eb23700c28cbd262 git | Not specified |
| CNA | Linux | Linux | affected 9dfa1dfe4d5e5e66a991321ab08afe69759d797a 6d52a4a0520a6696bdde51caa11f2d6821cd0c01 git | Not specified |
| CNA | Linux | Linux | affected 3a758a2b78da2f49f7165678faf999e946a0c4b5 git | Not specified |
| CNA | Linux | Linux | affected 131172845aa2c804ffa9423455aee585061ea35e git | Not specified |
| CNA | Linux | Linux | affected b1fef6b81871a396f3b8702077333e769673c87b git | Not specified |
| CNA | Linux | Linux | affected add9183d993c12fb61ce0a674a424341d5be5b36 git | Not specified |
| CNA | Linux | Linux | affected 3.10.61 3.11 semver | Not specified |
| CNA | Linux | Linux | affected 3.12.34 3.13 semver | Not specified |
| CNA | Linux | Linux | affected 3.14.25 3.15 semver | Not specified |
| CNA | Linux | Linux | affected 3.17.4 3.18 semver | Not specified |
| CNA | Linux | Linux | affected 3.18 | Not specified |
| CNA | Linux | Linux | unaffected 3.18 semver | Not specified |
| CNA | Linux | Linux | unaffected 5.10.253 5.10.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.15.203 5.15.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.168 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.6.134 6.6.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.12.81 6.12.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.18.22 6.18.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.19.12 6.19.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.0 * original_commit_for_fix | Not specified |
| ADP | Siemens | SIMATIC S7-1500 CPU 1518-4 PN/DP MFP | affected V3.1.6 * custom | Not specified |
| ADP | Siemens | SIMATIC S7-1500 CPU 1518-4 PN/DP MFP | affected V3.1.5 * custom | Not specified |
| ADP | Siemens | SIMATIC S7-1500 CPU 1518-4 PN/DP MFP | affected V3.1.6 * custom | Not specified |
| ADP | Siemens | SIMATIC S7-1500 CPU 1518-4 PN/DP MFP | affected V3.1.5 * custom | Not specified |
| ADP | Siemens | SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP | affected V3.1.6 * custom | Not specified |
| ADP | Siemens | SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP | affected V3.1.5 * custom | Not specified |
| ADP | Siemens | SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP | affected V3.1.6 * custom | Not specified |
| ADP | Siemens | SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP | affected V3.1.5 * custom | Not specified |
| ADP | Siemens | SIPLUS S7-1500 CPU 1518-4 PN/DP MFP | affected V3.1.6 * custom | Not specified |
| ADP | Siemens | SIPLUS S7-1500 CPU 1518-4 PN/DP MFP | affected V3.1.5 * custom | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/761b45c661af48da6a065868d59ab1e1f64fd9b6 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/88a8f56e6276f616baad4274c6b8e4683e26e520 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| cert-portal.siemens.com/productcert/html/ssa-082556.html | 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e | cert-portal.siemens.com | |
| git.kernel.org/stable/c/6d52a4a0520a6696bdde51caa11f2d6821cd0c01 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/4ec216410fac9de83c99177a160ebb8d42fad075 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/09883bf257f4243ed5a1fd35078ec6f0d0f3696a | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/f08ffa3e1c8e36b6131f69c5eb23700c28cbd262 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| cert-portal.siemens.com/productcert/html/ssa-019113.html | 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e | cert-portal.siemens.com | |
| git.kernel.org/stable/c/6b419700e459fbf707ca1543b7c1b57a60fedb73 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/607245c4dbb86d9a10dd8388da0fb82170a99b61 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.