CVE-2026-31634
medium
CVSS v3
5.5
CVSS v4 NEW
โ
VIR risk
5.5
Description
In the Linux kernel, the following vulnerability has been resolved: rxrpc: fix reference count leak in rxrpc_server_keyring() This patch fixes a reference count leak in rxrpc_server_keyring() by checking if rx->securities is already set.
Predictions
Exploit likelihood
55%
Patch ETA
โ
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| sles | affected | | |
| debian | bookworm | fixed | 6.1.170-1 |
| debian | forky | fixed | 6.19.13-1 |
| debian | sid | fixed | 6.19.13-1 |
| debian | trixie | fixed | 6.12.85-1 |
| debian | bullseye | fixed | 6.1.170-1~deb11u1 |
| linux-kernel | affected | 5.15.203 | |
| linux-kernel | 2.6.22 | affected | |
| linux-kernel | 7.0 | affected | |
References
- https://git.kernel.org/stable/c/12de9e0e0b0b7058be7dfb8a5927eb565bc25780
- https://git.kernel.org/stable/c/139c750bf06649097d98b0bc41e2a678b4627e27
- https://git.kernel.org/stable/c/8ee931c3cd97f1c42b4fbf057f04b9dae45dfb7a
- https://git.kernel.org/stable/c/9ce36d28f67c2a477a7e2f03480de3f6783fb363
- https://git.kernel.org/stable/c/c6d9ea26cf8756ad6f162578e94a5f82f6fae3c2
- https://git.kernel.org/stable/c/f125846ee79fcae537a964ce66494e96fa54a6de
- https://git.kernel.org/stable/c/fc76d0bd00850b7372f0a4a319c0c60f80487632
- https://www.suse.com/security/cve/CVE-2026-31634.html
- https://security-tracker.debian.org/tracker/CVE-2026-31634
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.