{"id":"CVE-2026-31496","summary":"netfilter: nf_conntrack_expect: skip expectations in other netns via proc","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_conntrack_expect: skip expectations in other netns via proc\n\nSkip expectations that do not reside in this netns.\n\nSimilar to e77e6ff502ea (\"netfilter: conntrack: do not dump other netns's\nconntrack entries via proc\").","modified":"2026-06-18T03:56:35.239772182Z","published":"2026-04-22T13:54:18.287Z","related":["SUSE-SU-2026:2068-1","SUSE-SU-2026:21841-1","SUSE-SU-2026:21845-1","SUSE-SU-2026:21860-1","SUSE-SU-2026:21876-1","SUSE-SU-2026:21877-1","SUSE-SU-2026:21916-1","SUSE-SU-2026:21919-1","SUSE-SU-2026:2217-1","SUSE-SU-2026:2238-1","openSUSE-SU-2026:20826-1"],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/31xxx/CVE-2026-31496.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/168145c87444619e3e649322bbe7719ecd00d411"},{"type":"WEB","url":"https://git.kernel.org/stable/c/2028405ea6987b4448784e439413202cfe19f43f"},{"type":"WEB","url":"https://git.kernel.org/stable/c/3265ad619987cb551edaf797ed056d80ac450225"},{"type":"WEB","url":"https://git.kernel.org/stable/c/3db5647984de03d9cae0dcddb509b058351f0ee4"},{"type":"WEB","url":"https://git.kernel.org/stable/c/9ca8c7452493d915f9bbf2f39331e6c583d07a23"},{"type":"WEB","url":"https://git.kernel.org/stable/c/dcfcd95b3ae7683e8ae55c92284b3430ce614bc7"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/31xxx/CVE-2026-31496.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-31496"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"9b03f38d0487f3908696242286d934c9b38f9d2a"},{"fixed":"2028405ea6987b4448784e439413202cfe19f43f"},{"fixed":"168145c87444619e3e649322bbe7719ecd00d411"},{"fixed":"dcfcd95b3ae7683e8ae55c92284b3430ce614bc7"},{"fixed":"9ca8c7452493d915f9bbf2f39331e6c583d07a23"},{"fixed":"3265ad619987cb551edaf797ed056d80ac450225"},{"fixed":"3db5647984de03d9cae0dcddb509b058351f0ee4"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-31496.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"2.6.28"},{"fixed":"6.1.168"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.131"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.80"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.21"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"6.19.11"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-31496.json"}}],"schema_version":"1.7.5"}