Echo: linux: security update to 6.1.147-1

high Tenable Cloud Security Plugin ID 464804

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: wifi: prevent A-MSDU attacks in mesh
networks This patch is a mitigation to prevent the A-MSDU spoofing vulnerability for mesh networks. The
initial update to the IEEE 802.11 standard, in response to the FragAttacks, missed this case
(CVE-2025-27558). It can be considered a variant of CVE-2020-24588 but for mesh networks. This patch tries
to detect if a standard MSDU was turned into an A-MSDU by an adversary. This is done by parsing a received
A-MSDU as a standard MSDU, calculating the length of the Mesh Control header, and seeing if the 6 bytes
after this header equal the start of an rfc1042 header. If equal, this is a strong indication of an
ongoing attack attempt. This defense was tested with mac80211_hwsim against a mesh network that uses an
empty Mesh Address Extension field, i.e., when four addresses are used, and when using a 12-byte Mesh
Address Extension field, i.e., when six addresses are used. Functionality of normal MSDUs and A-MSDUs was
also tested, and confirmed working, when using both an empty and 12-byte Mesh Address Extension field. It
was also tested with mac80211_hwsim that A-MSDU attacks in non-mesh networks keep being detected and
prevented. Note that the vulnerability being patched, and the defense being implemented, was also
discussed in the following paper and in the following IEEE 802.11 presentation:
https://papers.mathyvanhoef.com/wisec2025.pdf https://mentor.ieee.org/802.11/dcn/25/11-25-0949-00-000m-a-
msdu-mesh-spoof-protection.docx (CVE-2025-38512)

Solution

Update the linux library and its related packages to version 6.1.147-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2025-38512

Plugin Details

Severity: High

ID: 464804

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 57.46

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2025-38512

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 6.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 9/15/2025

Vulnerability Publication Date: 8/5/2025

Reference Information

CVE: CVE-2025-38512