Echo: linux: security update to 6.1.176-1

high Tenable Self-Hosted Container Security Plugin ID 460908

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: ksmbd: scope conn->binding slowpath to
bound sessions only When the binding SESSION_SETUP sets conn->binding = true, the flag stays set after the
call so that the global session lookup in ksmbd_session_lookup_all() can find the session, which was not
added to conn->sessions. Because the flag is connection-wide, the global lookup path will also resolve any
other session by id if asked. Tighten the global lookup so that the returned session must have this
connection registered in its channel xarray (sess->ksmbd_chann_list). The channel entry is installed by
the existing binding_session path in ntlm_authenticate()/krb5_authenticate() when a SESSION_SETUP
completes successfully, so this condition is a strict equivalent of "this connection has been accepted as
a channel of this session". Connections that have not bound to a given session cannot reach it via the
global table. The existing conn->binding gate for entering the slowpath is preserved so that non-binding
connections keep the fast-path-only behavior, and the session->state check is unchanged. (CVE-2026-52911)

Solution

Update the linux library and its related packages to version 6.1.176-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2026-52911

Plugin Details

Severity: High

ID: 460908

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 58.02

CVSS v2

Risk Factor: High

Base Score: 9

Temporal Score: 6.7

Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2026-52911

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 7.7

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 6/21/2026

Vulnerability Publication Date: 6/3/2026

Reference Information

CVE: CVE-2026-52911