Google: sys-kernel/csql-kernel-6_1, sys-kernel/csql-kernel-6_6: security update to 18613.339.70

medium Tenable Self-Hosted Container Security Plugin ID 467316

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: net/sched: Abort __tc_modify_qdisc if
parent class does not exist Lion's patch [1] revealed an ancient bug in the qdisc API. Whenever a user
creates/modifies a qdisc specifying as a parent another qdisc, the qdisc API will, during grafting, detect
that the user is not trying to attach to a class and reject. However grafting is performed after
qdisc_create (and thus the qdiscs' init callback) is executed. In qdiscs that eventually call
qdisc_tree_reduce_backlog during init or change (such as fq, hhf, choke, etc), an issue arises. For
example, executing the following commands: sudo tc qdisc add dev lo root handle a: htb default 2 sudo tc
qdisc add dev lo parent a: handle beef fq Qdiscs such as fq, hhf, choke, etc unconditionally invoke
qdisc_tree_reduce_backlog() in their control path init() or change() which then causes a failure to find
the child class; however, that does not stop the unconditional invocation of the assumed child qdisc's
qlen_notify with a null class. All these qdiscs make the assumption that class is non-null. The solution
is ensure that qdisc_leaf() which looks up the parent class, and is invoked prior to qdisc_create(),
should return failure on not finding the class. In this patch, we leverage qdisc_leaf to return ERR_PTRs
whenever the parentid doesn't correspond to a class, so that we can detect it earlier on and abort before
qdisc_create is called. [1] https://lore.kernel.org/netdev/[email protected]/
(CVE-2025-38457)

Solution

Update the sys-kernel/csql-kernel-6_1 library and its related packages to version 18613.339.70 or later.

See Also

https://storage.googleapis.com/cos-oval-vulnerability-feed/cos-117.oval.xml.tar.gz

Plugin Details

Severity: Medium

ID: 467316

Version: Revision 1.1

Type: Local

Published: 10/2/2026

Updated: 10/2/2026

Risk Information

VPR

Risk Factor: Medium

Score: 5

Percentile: 95.09

Vendor

Vendor Severity: LOW

CVSS v2

Risk Factor: Medium

Base Score: 4.6

Temporal Score: 3.4

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

CVSS Score Source: CVE-2025-38457

CVSS v3

Risk Factor: Medium

Base Score: 5.5

Temporal Score: 4.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 7/25/2025

Reference Information

CVE: CVE-2025-38457