Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2513 articles · 132033 vulns · 36/41 feeds (7d)
← Back to list
8.8
CVE-2026-31739PATCHED
nvidia · tegra crypto driver

crypto: tegra - Add missing CRYPTO_ALG_ASYNC

Description

In the Linux kernel, the following vulnerability has been resolved: crypto: tegra - Add missing CRYPTO_ALG_ASYNC The tegra crypto driver failed to set the CRYPTO_ALG_ASYNC on its asynchronous algorithms, causing the crypto API to select them for users that request only synchronous algorithms. This causes crashes (at least). Fix this by adding the flag like what the other drivers do. Also remove the unnecessary CRYPTO_ALG_TYPE_* flags, since those just get ignored and overridden by the registration function anyway.

Affected Products

VendorProductVersions
nvidiategra crypto driver0880bb3b00c855fc244b7177ffdaafef4d0aa1e0, 0880bb3b00c855fc244b7177ffdaafef4d0aa1e0, 0880bb3b00c855fc244b7177ffdaafef4d0aa1e0, 0880bb3b00c855fc244b7177ffdaafef4d0aa1e0, 6.10

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
linuxlinuxmitre_affected90%
open sourceopen source linux kernelcert_advisory90%

References

  • https://git.kernel.org/stable/c/bdbf027a4504b4a86740de6beb6d18a957331839
  • https://git.kernel.org/stable/c/3aea268b6d5cde3b087df9eeecc3bc620aa09513
  • https://git.kernel.org/stable/c/429d05565eb19ee545d8a8395991372adbe4daf3
  • https://git.kernel.org/stable/c/4b56770d345524fc2acc143a2b85539cf7d74bc1

Related News (3 articles)

Tier B
BSI Advisories2d ago
[NEU] [mittel] Linux Kernel: Mehrere Schwachstellen
→ No new info (linked only)
Tier C
VulDB4d ago
CVE-2026-31739 | Linux Kernel up to 6.12.80/6.18.21/6.19.11 Tegra Crypto Driver denial of service
→ No new info (linked only)
Tier C
Linux Kernel CVEs4d ago
CVE-2026-31739: crypto: tegra - Add missing CRYPTO_ALG_ASYNC
→ No new info (linked only)
CVSS 3.18.8 HIGH
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited❌ No
Patch available
bdbf027a4504b4a86740de6beb6d18a9573318393aea268b6d5cde3b087df9eeecc3bc620aa09513429d05565eb19ee545d8a8395991372adbe4daf34b56770d345524fc2acc143a2b85539cf7d74bc106.12.816.18.226.19.127.0
PublishedMay 1, 2026
Last enriched4d agov2
Trending Score31
Source articles3
Independent3
Info Completeness7/14
Missing: cvss, epss, cwe, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALPRE-CVE
Rowhammer Attack Against NVIDIA Chips
Trending: 30
CRITICALCVE-2026-24178EXP
CVE-2026-24178: NVIDIA NVFlare Dashboard contains a vulnerability in the user management and authentication system where an unauthentica
Trending: 20
HIGHCVE-2026-24186EXP
CVE-2026-24186: NVIDIA FLARE SDK contains a vulnerability in FOBS, where an attacker may cause deserialization of untrusted data by sen
Trending: 15
HIGHCVE-2026-24222
CVE-2026-24222: NVIDIA NeMoClaw contains a vulnerability in the sandbox environment initialization component, where a remote attacker co
Trending: 14
MEDIUMCVE-2026-24204EXP
CVE-2026-24204: NVIDIA Flare SDK contains a vulnerability where an Attacker may cause an Improper Input Validation by path traversing. A
Trending: 12

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
May 1, 2026
Discovered by ZDM
May 1, 2026
Updated: affectedVersions
May 1, 2026
Patch Available
May 3, 2026

Version History

v2
Last enriched 4d ago
v2Tier C4d ago

Updated description with details about CVE-2026-31739, changed severity to CRITICAL, and updated affected versions.

affectedVersions
via VulDB
v14d ago

Initial creation