Re: Vulnerabilidad «0-day» en kernel de linux (des de 4.14 hasta 6.17)

Miguel Ángel González <[email protected]> Fri, 1 May 2026 23:59:31 +0200
Newsgroups gmane.linux.debian.user.spanish
Message-ID <CAE4z66aWyj_9rcRYFouuge=ZPwKYji5CsQnRxzKAqPFbrf9nuA@mail.gmail.com>
--000000000000b00b830650c8b2be
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

Gracias por el aviso.

/m.a.

El vie, 1 may 2026, 19:12, JAP - Debian <[email protected]>
escribi=C3=B3:

>
>
> El 1/5/26 a las 6:13, Camale=C3=B3n escribi=C3=B3:
> > Hola,
> >
> > Han notificado una vulneabilidad en versiones del kernel de linux (4.14
> > hasta 6.17) de tipo =C2=AB0-day=C2=BB, lo mando pro si a alguien le res=
ulta de
> > utilidad (y para ver si la lista funcioana proque hace eones que no
> > recibo menasjes :-P)
> >
> > Linux Kernel 0-Day =E2=80=9CCopy Fail=E2=80=9D Affects Distros Since 20=
17
> > https://cyberpress.org/linux-kernel-0-day-copy-fail/
> >
> > Me parece que Debian ya ha sacado el parche para Trixie=C2=B9 pero por =
si
> > a alguien le corre prisa o necesita aplicar contramedidas, al final del
> > art=C3=ADculo indican el procedimdiento:
> >
> > ****
> > Pending kernel updates, administrators should apply these immediate
> > mitigations:
> >
> > #echo "install algif_aead /bin/false" >
> /etc/modprobe.d/disable-algif-aead.conf
> > #rmmod algif_aead 2>/dev/null
> > ****
> >
> > Yo... hum... prefiero esperar en mis Bullseye (oldoldstable) y Bookworm
> > (oldstable) que tengo instaladas O:-)
> >
> > =C2=B9https://security-tracker.debian.org/tracker/CVE-2026-31431
> >
> > Saludos,
> >
>
> S=C3=AD que habemos los que nos fijamos todos los d=C3=ADas.
>
> JAP
>
>

--000000000000b00b830650c8b2be
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"auto"><div>Gracias por el aviso.</div><div><br></div><div data-=
smartmail=3D"gmail_signature"><div dir=3D"ltr"><div><div dir=3D"ltr"><div>/=
m.a.<br></div></div></div></div></div></div><br><div class=3D"gmail_quote g=
mail_quote_container"><div dir=3D"ltr" class=3D"gmail_attr">El vie, 1 may 2=
026, 19:12, JAP - Debian &lt;<a href=3D"mailto:[email protected]=
m">[email protected]</a>&gt; escribi=C3=B3:<br></div><blockquot=
e class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1px #ccc sol=
id;padding-left:1ex"><br>
<br>
El 1/5/26 a las 6:13, Camale=C3=B3n escribi=C3=B3:<br>
&gt; Hola,<br>
&gt; <br>
&gt; Han notificado una vulneabilidad en versiones del kernel de linux (4.1=
4<br>
&gt; hasta 6.17) de tipo =C2=AB0-day=C2=BB, lo mando pro si a alguien le re=
sulta de<br>
&gt; utilidad (y para ver si la lista funcioana proque hace eones que no<br=
>
&gt; recibo menasjes :-P)<br>
&gt; <br>
&gt; Linux Kernel 0-Day =E2=80=9CCopy Fail=E2=80=9D Affects Distros Since 2=
017<br>
&gt; <a href=3D"https://cyberpress.org/linux-kernel-0-day-copy-fail/" rel=
=3D"noreferrer noreferrer" target=3D"_blank">https://cyberpress.org/linux-k=
ernel-0-day-copy-fail/</a><br>
&gt; <br>
&gt; Me parece que Debian ya ha sacado el parche para Trixie=C2=B9 pero por=
 si<br>
&gt; a alguien le corre prisa o necesita aplicar contramedidas, al final de=
l<br>
&gt; art=C3=ADculo indican el procedimdiento:<br>
&gt; <br>
&gt; ****<br>
&gt; Pending kernel updates, administrators should apply these immediate<br=
>
&gt; mitigations:<br>
&gt; <br>
&gt; #echo &quot;install algif_aead /bin/false&quot; &gt; /etc/modprobe.d/d=
isable-algif-aead.conf<br>
&gt; #rmmod algif_aead 2&gt;/dev/null<br>
&gt; ****<br>
&gt; <br>
&gt; Yo... hum... prefiero esperar en mis Bullseye (oldoldstable) y Bookwor=
m<br>
&gt; (oldstable) que tengo instaladas O:-)<br>
&gt; <br>
&gt; =C2=B9<a href=3D"https://security-tracker.debian.org/tracker/CVE-2026-=
31431" rel=3D"noreferrer noreferrer" target=3D"_blank">https://security-tra=
cker.debian.org/tracker/CVE-2026-31431</a><br>
&gt; <br>
&gt; Saludos,<br>
&gt; <br>
<br>
S=C3=AD que habemos los que nos fijamos todos los d=C3=ADas.<br>
<br>
JAP<br>
<br>
</blockquote></div>

--000000000000b00b830650c8b2be--