Echo: linux: security update to 6.1.176-1

critical Tenable Self-Hosted Container Security Plugin ID 462317

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: sctp: fix uninit-value in
__sctp_rcv_asconf_lookup() __sctp_rcv_asconf_lookup() in net/sctp/input.c only checks that the ASCONF
chunk can hold the ADDIP header and a parameter header, then calls af->from_addr_param(), which reads the
full address (16 bytes for IPv6) trusting the parameter's declared length. An unauthenticated peer can
send a truncated trailing ASCONF chunk that declares an IPv6 address parameter but stops after the 4-byte
parameter header; reached from the no-association lookup path, from_addr_param() then reads uninitialized
bytes past the parameter. Impact: an unauthenticated SCTP peer makes the receive path read up to 16 bytes
of uninitialized memory past a truncated ASCONF address parameter. The sibling __sctp_rcv_init_lookup()
bounds parameters with sctp_walk_params(); this path open-codes the fetch and omits the bound. Verify the
whole address parameter lies within the chunk before from_addr_param() reads it, the same class of fix as
commit 51e5ad549c43 ("net: sctp: fix KMSAN uninit-value in sctp_inq_pop"). (CVE-2026-53225)

Solution

Update the linux library and its related packages to version 6.1.176-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2026-53225

Plugin Details

Severity: Critical

ID: 462317

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Medium

Score: 4.3

Percentile: 53.64

CVSS v2

Risk Factor: High

Base Score: 9.4

Temporal Score: 7

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:N/A:C

CVSS Score Source: CVE-2026-53225

CVSS v3

Risk Factor: Critical

Base Score: 9.1

Temporal Score: 7.9

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 6/25/2026

Vulnerability Publication Date: 6/25/2026

Reference Information

CVE: CVE-2026-53225