Echo: linux: security update to 6.12.88-1

high Tenable Cloud Security Plugin ID 465068

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate inherited ACE SID
length smb_inherit_dacl() walks the parent directory DACL loaded from the security descriptor xattr. It
verifies that each ACE contains the fixed SID header before using it, but does not verify that the
variable-length SID described by sid.num_subauth is fully contained in the ACE. A malformed inheritable
ACE can advertise more subauthorities than are present in the ACE. compare_sids() may then read past the
ACE. smb_set_ace() also clamps the copied destination SID, but used the unchecked source SID count to
compute the inherited ACE size. That could advance the temporary inherited ACE buffer pointer and nt_size
accounting past the allocated buffer. Fix this by validating the parent ACE SID count and SID length
before using the SID during inheritance. Compute the inherited ACE size from the copied SID so the size
matches the bounded destination SID. Reject the inherited DACL if size accumulation would overflow
smb_acl.size or the security descriptor allocation size. (CVE-2026-43490)

Solution

Update the linux library and its related packages to version 6.12.88-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2026-43490

Plugin Details

Severity: High

ID: 465068

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 57.87

CVSS v2

Risk Factor: High

Base Score: 9

Temporal Score: 6.7

Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2026-43490

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 7.7

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 5/15/2026

Vulnerability Publication Date: 5/15/2026

Reference Information

CVE: CVE-2026-43490