
Interactive bash helper to check exposure to CVE-2026-31431 (Copy Fail) and apply temporary mitigation by disabling algif_aead module on Debian/Ubuntu and RHEL-based systems.

CVE-2026-31431 Helper based on https://copy.fail/
Interactive bash helper to review basic exposure related to CVE-2026-31431 (Copy Fail) and apply a temporary mitigation based on algif_aead.
Mainly intended for:
algif_aead is availablealgif_aead is loadedapt or dnf)copyfail-tool.shreadme.rdGrant permissions and run:
chmod +x copyfail-tool.sh
./copyfail-tool.sh
To apply or revert mitigation, run it with sudo:
sudo ./copyfail-tool.sh
Creates this file:
/etc/modprobe.d/disable-algif.conf
With this line:
install algif_aead /bin/false
And then attempts:
rmmod algif_aead
Before applying the mitigation:

After applying the mitigation:

This tool is for quick review and temporary containment. The main recommendation remains:
Many distributions apply security backports, so the kernel version alone does not always confirm whether you are already protected.