Echo: linux: security update to 6.12.94-1

high Tenable Cloud Security Plugin ID 465453

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: use chan timer to
close channels in cleanup_listen() l2cap_chan_close() removes the channel from conn->chan_l, which must be
done under conn->lock. cleanup_listen() runs under the parent sk_lock, so acquiring conn->lock would
invert the established conn->lock -> chan->lock -> sk_lock order. Instead of calling l2cap_chan_close()
directly, schedule l2cap_chan_timeout with delay 0 to close the channel asynchronously. The timeout
handler already acquires conn->lock and chan->lock in the correct order. The timer is only armed when
chan->conn is still set: if it is already NULL, l2cap_conn_del() has already processed this channel
(l2cap_chan_del + l2cap_sock_teardown_cb + l2cap_sock_close_cb), so there is nothing left to do. If
l2cap_conn_del() races in after the timer is armed, __clear_chan_timer() inside l2cap_chan_del() cancels
it; if the timer has already fired, the handler returns harmlessly because chan->conn was cleared.
(CVE-2026-53358)

Solution

Update the linux library and its related packages to version 6.12.94-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2026-53358

Plugin Details

Severity: High

ID: 465453

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 58.14

CVSS v2

Risk Factor: High

Base Score: 8.3

Temporal Score: 6.1

Vector: CVSS2#AV:A/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2026-53358

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 7.7

Vector: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 7/3/2026

Vulnerability Publication Date: 7/2/2026

Reference Information

CVE: CVE-2026-53358