This critical Linux vulnerability is putting millions of systems at risk – how to protect yours


This critical Linux vulnerability is putting millions of systems at risk - how to protect yours

Kerry Wan/ZDNET

Follow ZDNET: Add us as a preferred source on Google.


ZDNET key takeaways

  • Copy Fail is a dangerous Linux vulnerability.
  • This flaw makes gaining root access easy for attackers.
  • Copy Fail affects millions of Linux systems.

CVE-2026-31431, also known as Copy Fail, is a critical Linux kernel vulnerability that’s been hiding out since 2017 and is now getting the security spotlight it deserves.

Also: This simple Linux tweak fixes crashes automatically – and it costs me nothing

Oftentimes, Linux vulnerabilities can be a bit overblown, but not in this case. Copy Fail is serious business and should be considered an issue that must be mitigated.

What is Copy Fail?

Let’s talk about Copy Fail in terms that anyone can understand.

Imagine your computer’s memory as a chalkboard, where a teacher keeps track of your grades in real time. You don’t allow students to use either chalk or erasers, so they can’t change their grades. The “Copy Fail” vulnerability is like a sneaky student who somehow gains access to an eraser and chalk, and he changes just his grade while you’re not looking.

Essentially, Copy Fail is a flaw in the Linux system that is in charge of handling security for certain types of data. The flaw allows an attacker, who has just basic access to a system, to alter a crucial piece of data that exists within the computer’s RAM. Once the change is made, the altered data can trick the system into thinking that the attacker is the root user, giving the attacker full control over the system.

Also: 6 reasons a minimal Linux install might be the smartest move you make

Think of it this way: A janitor takes the nameplate from the boss’s office and slaps it on the wall beside his closet so everyone thinks he is the boss.

That’s Copy Fail.

A difference between Copy Fail and other vulnerabilities that have hit Linux is that this one doesn’t require specific timing or certain events to happen in an exact order. It’s much easier, and its effects can be devastating.

A bit more detail

For those who want a bit more detail about Copy Fail: It abuses the AF_ALG socket interface and splice() system call to overwrite a mere 4 bytes in the kernel’s page cache for any readable file. Once this occurs, attackers can then modify the setuid binaries, such as the su command, that are in memory to gain root access.

Copy Fail is different from “race condition” exploits because it’s a stable, straight-line vulnerability that doesn’t require timing-dependent retries to elevate permissions.

Also: The first 8 Linux commands every new user should learn

Copy Fail affects all Linux kernels from 4.14 to 6.19.12. You read that right: kernels from 2017 to the present.

According to the Xint Code Research Team, “This finding was AI-assisted, but began with an insight from Theori researcher Taeyang Lee, who was studying how the Linux crypto subsystem interacts with page-cache-backed data. He used Xint Code to scale his research across the entire crypto subsystem, and Copy Fail was the most critical finding in the report.”

How to avoid Copy Fail

The easiest way to mitigate the Copy Fail Linux vulnerability is to update your kernel to the latest version. To find out if your kernel has been patched against Copy Fail, issue the following command:

dpkg -l kmod grep -qE ‘^algif_aead ‘ /proc/modules && echo “Affected module is loaded” || echo “Affected module is NOT loaded”

If your kernel has been patched, you’ll see “Affected module is NOT loaded.” If your kernel has not been patched, you’ll see “Affected module is loaded.” If you run into the latter, make sure to update your system and rerun the command. If, after an update, your system is still not patched, you can disable the algif_aead module with the command:

install algif_aead /bin/false” > /etc/modprobe.d/disable-algif.conf

Also: You can use Linux 7.0 on these 7 distros today – here’s what to expect

You can then unload the module with:

rmmod algif_aead

You now know enough about Copy Fail to stay protected.





Source link

Leave a Reply

Subscribe to Our Newsletter

Get our latest articles delivered straight to your inbox. No spam, we promise.

Recent Reviews


When evaluating the health of a small business, we typically focus on financial indicators: revenue, margins, expenses, and growth trajectory. But Xero’s Emotional Tax Return 2026 report highlights another critical metric – the psychological cost.

U.S. small business owners lose an average of 33 working days per year to stress. That’s more than a month of lost productivity, driven not only by market conditions but by the sustained mental load of managing cash flow, compliance, rising costs and daily financial decisions.

From a financial therapy perspective, this is not surprising. But what stands out most is how persistent this financial stress has become.

Why avoidance is common – and predictable

The report reveals a pattern many small business owners will recognize:

  • 73% have been caught off guard by a tax outcome
  • 34% fear making financial mistakes
  • Owners lose an average of eight hours per week to stress

Avoidance is often misunderstood as poor discipline. In reality, it is a common psychological response to perceived threat. When systems feel fragmented or unclear, financial tasks can trigger anxiety. Choosing to disengage reduces discomfort temporarily, but it allows the uncertainty to compound.

When financial visibility is low, stress increases. And when stress increases, decision-making quality declines. Reducing small business stress requires addressing that cycle directly. Stress, in this context, is not only a mental health issue. It is an operational constraint that affects small business productivity.

When financial stress becomes structural

According to the report:

  • 70% of owners say financial management is a major stressor
  • 81% say this fiscal year has been more stressful than previous years
  • 74% report stress negatively affects their professional performance

That strain shows up in missed opportunities (34%), slower decision-making (28%) and reduced creativity (30%).

In clinical practice, I often see how chronic financial stress narrows cognitive bandwidth. When uncertainty around cash flow, tax obligations or operating expenses becomes constant, the brain shifts into threat mode. Attention tightens. Working memory declines. Over time, this doesn’t just feel exhausting. It becomes limiting.

Financial visibility reduces perceived threat

One of the most effective stress-reduction strategies in financial therapy is increasing perceived control. Control does not mean eliminating uncertainty entirely. It means improving clarity within what can be managed.

This is where a platform like Xero plays a crucial role. Real-time dashboards, automated bank reconciliation, integrated reporting and digital receipt capture centralize financial data and reduce manual workload. Instead of chasing paperwork or reconciling transactions late at night, business owners can access up-to-date cash flow information in one place.

Eighty-seven percent of U.S. customers say Xero improves financial visibility. Ninety percent say it helps their business run more efficiently.

From a psychological standpoint, improved visibility reduces threat activation. When business owners can clearly see what’s coming in, what’s going out and what’s due, decision-making becomes proactive rather than reactive.

Bookkeeping automation protects mental bandwidth

The average small business owner spends 22 hours per month managing finances. That’s nearly three full workdays devoted to admin. Automation meaningfully reduces that burden. Businesses using Xero save an average of six hours per week on bill management alone.

Those hours add up. But more importantly, so does cognitive relief. Less manual data entry. Fewer surprises at tax time. Fewer last-minute reconciliations. The result is not just greater efficiency, but stronger cash flow management and better long-term planning.

When administrative friction decreases, small business productivity improves – and so does wellbeing.

Collaboration reduces isolation

Despite the documented impact of financial stress, only 9% of small business owners seek advice from an accountant or advisor as a coping strategy.

Isolation intensifies pressure. Collaboration diffuses it.

Real-time collaboration features allow business owners and advisors to work from the same live financial data. That reduces errors, improves forecasting and increases confidence. For the 34% who fear making financial mistakes, shared visibility offers both technical accuracy and emotional reassurance.

In my experience, financial clarity combined with trusted guidance is one of the most powerful antidotes to chronic financial stress. It transforms financial management from a solitary burden into a supported system.

Turning emotional tax into resilience

Forty percent of small business owners report having considered giving up their business. That statistic underscores the broader economic implications of sustained financial stress.

Entrepreneurship will always involve risk. But persistent, preventable financial stress does not need to be part of the model.

Reducing the Emotional Tax starts with structural shifts:

  1. Improve real-time financial visibility
  2. Automate repetitive bookkeeping and admin
  3. Collaborate proactively with financial advisors

When business owners can clearly see their numbers, anticipate obligations, and reduce manual workload, they regain more than time. They regain perspective.

The Emotional Tax is measurable. But so is the return when clarity replaces uncertainty.

And when clarity returns, confidence follows – not just in the numbers, but in the long-term health of the business itself.

Was this article helpful?

YesNo



Source link