
Escáner: verificador de la vulnerabilidad CVE-2026-31431 del kernel de Linux algif_aead Copy Fail — PoC en Python para la ruta de desbordamiento del heap
Comprobador de vulnerabilidades del kernel de Linux para la ruta de ataque Copy Fail basada en algif_aead. Detecta si tu sistema es vulnerable y proporciona pasos de mitigación.
git clone https://github.com/ridhinva/copyfail-checker.git
cd copyfail-checker
python3 copyfail_checker.py # Standard check
python3 copyfail_checker.py --json # JSON output for automation
python3 copyfail_checker.py --fix # Apply mitigations (root)
$ python3 copyfail_checker.py
[*] Checking kernel version...
[*] Checking AF_ALG module...
[*] Checking protections...
==================================================
RESULTS:
[!!] kernel_version: Running kernel 6.5.0 - vulnerable range
[!!] AF_ALG: AF_ALG crypto module enabled
[OK] apparmor: AppArmor installed
==============================
Potential issues: 2
[!] RUNNING VULNERABLE KERNEL:
1. apt update && apt upgrade linux-image
2. echo 'blacklist algif_aead' > /etc/modprobe.d/algif.conf
3. reboot
@c_y_p_h3r