CVE Database
/

CVE-2026-31518

Back to search

CVE-2026-31518

Published: Apr 22, 2026

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: esp: fix skb leak with espintcp and async crypto When the TX queue for espintcp is full, esp_output_tail_tcp will return an error and not free the skb, because with synchronous crypto, the common xfrm output code will drop the packet for us. With async crypto (esp_output_done), we need to drop the skb when esp_output_tail_tcp returns an error.

VendorProductVersions

Linux

Linux

affected
e27cca96cd68fa2c6814c90f9a1cfd36bb68c593 - < aca3ad0c262f54a5b5c95dda80a48365997d1224
affected
e27cca96cd68fa2c6814c90f9a1cfd36bb68c593 - < 41aafca57de4a4c026701622bd4648f112a9edcd
affected
e27cca96cd68fa2c6814c90f9a1cfd36bb68c593 - < 4820847e036ff1035b01b69ad68dfc17e7028fe9
affected
e27cca96cd68fa2c6814c90f9a1cfd36bb68c593 - < 6a3ec6efbc4f90e0ccb2e71574f07351f19996f4
affected
e27cca96cd68fa2c6814c90f9a1cfd36bb68c593 - < df6f995358dc1f3c42484f5cfe241d7bd3e1cd15

+3 more versions

Linux

Linux

affected
5.6
unaffected
0 - < 5.6
unaffected
5.10.253 - <= 5.10.*
unaffected
5.15.203 - <= 5.15.*
unaffected
6.1.168 - <= 6.1.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now