Google: sys-kernel/lakitu-kernel-6_1, sys-kernel/lakitu-kernel-6_6: security update to 18613.75.26

medium Tenable Self-Hosted Container Security Plugin ID 472398

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- In the Linux kernel, the following vulnerability has been resolved: netfilter: xtables: avoid
NFPROTO_UNSPEC where needed syzbot managed to call xt_cluster match via ebtables: WARNING: CPU: 0 PID: 11
at net/netfilter/xt_cluster.c:72 xt_cluster_mt+0x196/0x780 [..] ebt_do_table+0x174b/0x2a40 Module
registers to NFPROTO_UNSPEC, but it assumes ipv4/ipv6 packet processing. As this is only useful to
restrict locally terminating TCP/UDP traffic, register this for ipv4 and ipv6 family only. Pablo points
out that this is a general issue, direct users of the set/getsockopt interface can call into
targets/matches that were only intended for use with ip(6)tables. Check all UNSPEC matches and targets for
similar issues: - matches and targets are fine except if they assume skb_network_header() is valid -- this
is only true when called from inet layer: ip(6) stack pulls the ip/ipv6 header into linear data area. -
targets that return XT_CONTINUE or other xtables verdicts must be restricted too, they are incompatbile
with the ebtables traverser, e.g. EBT_CONTINUE is a completely different value than XT_CONTINUE. Most
matches/targets are changed to register for NFPROTO_IPV4/IPV6, as they are provided for use by
ip(6)tables. The MARK target is also used by arptables, so register for NFPROTO_ARP too. While at it, bail
out if connbytes fails to enable the corresponding conntrack family. This change passes the selftests in
iptables.git. (CVE-2024-50038)

Solution

Update the sys-kernel/lakitu-kernel-6_1 library and its related packages to version 18613.75.26 or later.

See Also

https://storage.googleapis.com/cos-oval-vulnerability-feed/cos-117.oval.xml.tar.gz

Plugin Details

Severity: Medium

ID: 472398

Version: Revision 1.1

Type: Local

Published: 10/3/2026

Updated: 10/3/2026

Risk Information

VPR

Risk Factor: Low

Score: 3

Percentile: 23.18

Vendor

Vendor Severity: MEDIUM

CVSS v2

Risk Factor: Medium

Base Score: 4.6

Temporal Score: 3.4

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

CVSS Score Source: CVE-2024-50038

CVSS v3

Risk Factor: Medium

Base Score: 5.5

Temporal Score: 4.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 10/21/2024

Reference Information

CVE: CVE-2024-50038