Echo: linux: security update to 6.12.48-1

high Tenable Self-Hosted Container Security Plugin ID 465705

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: update channel list in
reg notifier instead reg worker Currently when ath11k gets a new channel list, it will be processed
according to the following steps: 1. update new channel list to cfg80211 and queue reg_work. 2. cfg80211
handles new channel list during reg_work. 3. update cfg80211's handled channel list to firmware by
ath11k_reg_update_chan_list(). But ath11k will immediately execute step 3 after reg_work is just queued.
Since step 2 is asynchronous, cfg80211 may not have completed handling the new channel list, which may
leading to an out-of-bounds write error: BUG: KASAN: slab-out-of-bounds in ath11k_reg_update_chan_list
Call Trace: ath11k_reg_update_chan_list+0xbfe/0xfe0 [ath11k] kfree+0x109/0x3a0
ath11k_regd_update+0x1cf/0x350 [ath11k] ath11k_regd_update_work+0x14/0x20 [ath11k]
process_one_work+0xe35/0x14c0 Should ensure step 2 is completely done before executing step 3. Thus Wen
raised patch[1]. When flag NL80211_REGDOM_SET_BY_DRIVER is set, cfg80211 will notify ath11k after step 2
is done. So enable the flag NL80211_REGDOM_SET_BY_DRIVER then cfg80211 will notify ath11k after step 2 is
done. At this time, there will be no KASAN bug during the execution of the step 3. [1]
https://patchwork.kernel.org/project/linux-wireless/patch/[email protected]/
Tested-on: WCN6855 hw2.0 PCI WLAN.HSP.1.1-03125-QCAHSPSWPL_V1_V2_SILICONZ_LITE-3 (CVE-2025-23133)

Solution

Update the linux library and its related packages to version 6.12.48-1 or later.

See Also

https://advisory.echohq.com/cve/CVE-2025-23133

Plugin Details

Severity: High

ID: 465705

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 57.24

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2025-23133

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 6.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 9/15/2025

Vulnerability Publication Date: 4/16/2025

Reference Information

CVE: CVE-2025-23133