Echo: linux: security update to 6.1.176-1

high Tenable Cloud Security Plugin ID 461176

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: rxrpc: proc: size address buffers for
%pISpc output The AF_RXRPC procfs helpers format local and remote socket addresses into fixed 50-byte
stack buffers with "%pISpc". That is too small for the longest current-tree IPv6-with-port form the
formatter can produce. In lib/vsprintf.c, the compressed IPv6 path uses a dotted-quad tail not only for
v4mapped addresses, but also for ISATAP addresses via ipv6_addr_is_isatap(). As a result, a case such as
[ffff:ffff:ffff:ffff:0:5efe:255.255.255.255]:65535 is possible with the current formatter. That is 50
visible characters, so 51 bytes including the trailing NUL, which does not fit in the existing char[50]
buffers used by net/rxrpc/proc.c. Size the buffers from the formatter's maximum textual form and switch
the call sites to scnprintf(). Changes since v1: - correct the changelog to cite the actual maximum
current-tree case explicitly - frame the proof around the ISATAP formatting path instead of the earlier
mapped-v4 example (CVE-2026-31630)

Solution

Update the linux library and its related packages to version 6.1.176-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2026-31630

Plugin Details

Severity: High

ID: 461176

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: High

Score: 7.6

Percentile: 98.49

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2026-31630

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 6.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 4/25/2026

Vulnerability Publication Date: 4/24/2026

Reference Information

CVE: CVE-2026-31630