Echo: linux: security update to 6.1.170-1

high Tenable Self-Hosted Container Security Plugin ID 465245

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potencial OOB in
get_file_all_info() for compound requests When a compound request consists of QUERY_DIRECTORY + QUERY_INFO
(FILE_ALL_INFORMATION) and the first command consumes nearly the entire max_trans_size,
get_file_all_info() would blindly call smbConvertToUTF16() with PATH_MAX, causing out-of-bounds write
beyond the response buffer. In get_file_all_info(), there was a missing validation check for the client-
provided OutputBufferLength before copying the filename into FileName field of the smb2_file_all_info
structure. If the filename length exceeds the available buffer space, it could lead to potential buffer
overflows or memory corruption during smbConvertToUTF16 conversion. This calculating the actual free
buffer size using smb2_calc_max_out_buf_len() and returning -EINVAL if the buffer is insufficient and
updating smbConvertToUTF16 to use the actual filename length (clamped by PATH_MAX) to ensure a safe copy
operation. (CVE-2026-31433)

Solution

Update the linux library and its related packages to version 6.1.170-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2026-31433

Plugin Details

Severity: High

ID: 465245

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 57.92

CVSS v2

Risk Factor: High

Base Score: 9

Temporal Score: 6.7

Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2026-31433

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 7.7

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 5/1/2026

Vulnerability Publication Date: 4/22/2026

Reference Information

CVE: CVE-2026-31433