Another reason to love @almalinux ❤️. Patch is now available in the production repositories.
https://almalinux.org/blog/2026-05-01-cve-2026-31431-copy-fail/

Copy Fail (CVE-2026-31431) patch ready for testing
The AnnouncementOn April 29, the team at Xint Code disclosed a Linux kernel flaw they have named Copy Fail, tracked as CVE-2026-31431. The bug lives in the kernel’s crypto subsystem — a logic flaw in authencesn chained through AF_ALG and splice() — and it lets any unprivileged local user escalate to root with a 732-byte exploit that the researchers report works unmodified across every mainstream distribution built since 2017. Every supported AlmaLinux release is affected.








