U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

CVE-2026-31670 Detail

Description

In the Linux kernel, the following vulnerability has been resolved: net: rfkill: prevent unlimited numbers of rfkill events from being created Userspace can create an unlimited number of rfkill events if the system is so configured, while not consuming them from the rfkill file descriptor, causing a potential out of memory situation. Prevent this from bounding the number of pending rfkill events at a "large" number (i.e. 1000) to prevent abuses like this.


Metrics

NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NIST CVSS score
NIST: NVD
N/A
NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to [email protected].

URL Source(s) Tag(s)
https://git.kernel.org/stable/c/4bcd1615a4e2a185ae9edd27b4143d7dfa7134f4 kernel.org
https://git.kernel.org/stable/c/673d2a3eef6e0ee9736501a150c9e4024a4e60a6 kernel.org
https://git.kernel.org/stable/c/80ce4cb026f0a4c4532b6cad827b44debda6256a kernel.org
https://git.kernel.org/stable/c/82843afc19012a29ba863961ef494165aa1a88f4 kernel.org
https://git.kernel.org/stable/c/a8c26800e0220e1550af012f5a20e50f5c78864d kernel.org
https://git.kernel.org/stable/c/b1e0c8d3ab58a0161db487bf5fc47adfcaf5d5ca kernel.org
https://git.kernel.org/stable/c/e3842779547c83150569071d9980517cc9029fc0 kernel.org
https://git.kernel.org/stable/c/ea245d78dec594372e27d8c79616baf49e98a4a1 kernel.org

Weakness Enumeration

CWE-ID CWE Name Source

Change History

1 change records found show changes

Quick Info

CVE Dictionary Entry:
CVE-2026-31670
NVD Published Date:
04/24/2026
NVD Last Modified:
04/24/2026
Source:
kernel.org