CISA reposted ABB's advisory for CVE-2026-31431 in ABB Ability Edgenius, a Linux kernel privilege-escalation flaw affecting versions 3.2.0.0 through 3.2.4.0, with 3.2.4.1 now listed as fixed. ABB says the product is deployed worldwide across critical manufacturing, energy, water and wastewater, and chemical environments.
The bug sits in the Linux kernel's cryptographic subsystem. A locally authenticated user or a compromised container workload can abuse it to gain root on the gateway, which means a foothold that starts inside a limited account or lower-privilege container can turn into complete control of the box.
For operators, the exposure is on the gateway itself, not just on the app layer above it: if Edgenius mediates plant systems, a local compromise can become operational control through the same host. Shared or containerized Linux deployments carry the clearest path from contained access to root, and the advisory leaves the broader estate impact dependent on what that gateway can reach.
CVSS 7.8 HIGH: in the Linux kernel, the following vulnerability has been resolved:
crypto: algif_aead - Revert to operating… EPSS 100% (100th percentile). Microsoft patch: CBL-Mariner Releases.
CISA federal remediation date May 15 · date passed
ABB Ability Edgenius Summary ABB is aware of public reports of a vulnerability CVE‑2026‑31431 (Copy Fail) in the product versions listed as affected in the advisory.