Linux Kernal (Copy Fail)
A local privilege escalation (LPE) vulnerability, commonly known as "Copy Fail", has been disclosed to affect the Linux kernel. If the vulnerability is exploited, a non-administrator user who is authenticated but has code execution privileges can gain elevated system privileges.
CVE-2026-31431 affects some ASUSTOR products with Linux Kernel versions higher than 4.14, from ADM 4.1 to ADM 5.1. Updates with Linux Kernel Patch will be released as soon as possible.
- Linux Kernel Patch has been updated on ADM 5.1.3.RH72 and ADM 4.3.3.RTB1 to resolve the issues.