Echo: linux: security update to 6.1.176-1

medium Tenable Self-Hosted Container Security Plugin ID 464750

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: i2c: dev: prevent integer overflow in
I2C_TIMEOUT ioctl While fuzzing with Syzkaller, a persistent `schedule_timeout: wrong timeout value`
warning was observed, accompanied by SMBus controller state machine corruption. The I2C_TIMEOUT ioctl
accepts a user-provided timeout in multiples of 10 ms. The user argument is checked against INT_MAX, but
it is subsequently multiplied by 10 before being passed to msecs_to_jiffies(). A malicious user can pass a
large value (e.g., 429496729) that passes the `arg > INT_MAX` check but overflows when multiplied by 10.
This results in a truncated 32-bit unsigned value that bypasses the internal `(int)m < 0` check in
`msecs_to_jiffies()`. The truncated value is then assigned to `client->adapter->timeout` (a signed 32-bit
int), which is reinterpreted as a negative number. When passed to wait_for_completion_timeout(), this
negative value undergoes sign extension to a 64-bit unsigned long, triggering the `schedule_timeout`
warning and causing premature returns. This leaves the SMBus state machine in an unrecoverable state,
constituting a local Denial of Service (DoS). Fix this by bounding the user argument to `INT_MAX / 10`.
[wsa: move the comment as well] (CVE-2026-52948)

Solution

Update the linux library and its related packages to version 6.1.176-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2026-52948

Plugin Details

Severity: Medium

ID: 464750

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Low

Score: 3

Percentile: 23.75

CVSS v2

Risk Factor: Medium

Base Score: 4.6

Temporal Score: 3.4

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

CVSS Score Source: CVE-2026-52948

CVSS v3

Risk Factor: Medium

Base Score: 5.5

Temporal Score: 4.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 6/25/2026

Vulnerability Publication Date: 6/24/2026

Reference Information

CVE: CVE-2026-52948