
Scanneur : vérificateur de vulnérabilité CVE-2026-31431 algif_aead Copy Fail du noyau Linux — PoC Python pour le chemin de débordement de tas
Vérificateur de vulnérabilité du noyau Linux pour le chemin d'attaque algif_aead basé sur « Copy Fail ». Détecte si votre système est vulnérable et fournit des étapes d'atténuation.
git clone https://github.com/ridhinva/copyfail-checker.git
cd copyfail-checker
python3 copyfail_checker.py # Standard check
python3 copyfail_checker.py --json # JSON output for automation
python3 copyfail_checker.py --fix # Apply mitigations (root)
$ python3 copyfail_checker.py
[*] Checking kernel version...
[*] Checking AF_ALG module...
[*] Checking protections...
==================================================
RESULTS:
[!!] kernel_version: Running kernel 6.5.0 - vulnerable range
[!!] AF_ALG: AF_ALG crypto module enabled
[OK] apparmor: AppArmor installed
==============================
Potential issues: 2
[!] RUNNING VULNERABLE KERNEL:
1. apt update && apt upgrade linux-image
2. echo 'blacklist algif_aead' > /etc/modprobe.d/algif.conf
3. reboot
@c_y_p_h3r