Echo: linux: security update to 6.1.147-1

high Tenable Self-Hosted Container Security Plugin ID 457537

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: dmaengine: nbpfaxi: Fix memory
corruption in probe() The nbpf->chan[] array is allocated earlier in the nbpf_probe() function and it has
"num_channels" elements. These three loops iterate one element farther than they should and corrupt
memory. The changes to the second loop are more involved. In this case, we're copying data from the
irqbuf[] array into the nbpf->chan[] array. If the data in irqbuf[i] is the error IRQ then we skip it, so
the iterators are not in sync. I added a check to ensure that we don't go beyond the end of the irqbuf[]
array. I'm pretty sure this can't happen, but it seemed harmless to add a check. On the other hand, after
the loop has ended there is a check to ensure that the "chan" iterator is where we expect it to be. In the
original code we went one element beyond the end of the array so the iterator wasn't in the correct place
and it would always return -EINVAL. However, now it will always be in the correct place. I deleted the
check since we know the result. (CVE-2025-38538)

Solution

Update the linux library and its related packages to version 6.1.147-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2025-38538

Plugin Details

Severity: High

ID: 457537

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 57.46

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2025-38538

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 6.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 9/15/2025

Vulnerability Publication Date: 8/5/2025

Reference Information

CVE: CVE-2025-38538