Critical severity9.8NVD Advisory· Published Apr 13, 2026· Updated May 20, 2026
CVE-2026-31414
CVE-2026-31414
Description
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_conntrack_expect: use expect->helper
Use expect->helper in ctnetlink and /proc to dump the helper name. Using nfct_help() without holding a reference to the master conntrack is unsafe.
Use exp->master->helper in ctnetlink path if userspace does not provide an explicit helper when creating an expectation to retain the existing behaviour. The ctnetlink expectation path holds the reference on the master conntrack and nf_conntrack_expect lock and the nfnetlink glue path refers to the master ct that is attached to the skb.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=2.6.30,<6.1.168
- cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc3:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc4:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc5:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc6:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
6- git.kernel.org/stable/c/3dfd3f7712b5a800f2ba632179e9b738076a51f0nvdPatch
- git.kernel.org/stable/c/4bd1b3d839172724b33d8d02c5a4ff6a1c775417nvdPatch
- git.kernel.org/stable/c/847cb7fe26c5ce5dce0d1a41fac1ea488b7f1781nvdPatch
- git.kernel.org/stable/c/b53294bff19e56ada2f230ceb8b1ffde61cc3817nvdPatch
- git.kernel.org/stable/c/e7ccaa0a62a8ff2be5d521299ce79390c318d306nvdPatch
- git.kernel.org/stable/c/f01794106042ee27e54af6fdf5b319a2fe3df94dnvdPatch
News mentions
1- Patch Tuesday - April 2026Rapid7 Blog · Apr 14, 2026