Debian dla-4498 : ata-modules-5.10.0-38-armmp-di - security update

high Nessus Plugin ID 302189

Synopsis

The remote Debian host is missing one or more security-related updates.

Description

The remote Debian 11 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-4498 advisory.

------------------------------------------------------------------------- Debian LTS Advisory DLA-4498-1 [email protected] https://www.debian.org/lts/security/ Ben Hutchings March 13, 2026 https://wiki.debian.org/LTS
-------------------------------------------------------------------------

Package : linux Version : 5.10.251-1 CVE ID : CVE-2022-50516 CVE-2025-38201 CVE-2025-71222 CVE-2025-71224 CVE-2025-71232 CVE-2025-71235 CVE-2025-71236 CVE-2025-71237 CVE-2025-71238 CVE-2026-23112 CVE-2026-23176 CVE-2026-23190 CVE-2026-23193 CVE-2026-23198 CVE-2026-23209 CVE-2026-23216 CVE-2026-23222 CVE-2026-23229 CVE-2026-23234 CVE-2026-23235 CVE-2026-23236 CVE-2026-23237 CVE-2026-23238 Debian Bug : 1127597

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

The Qualys Threat Research Unit (TRU) discovered several vulnerabilities in Apparmor. Details can be found in the Qualys advisory at https://www.qualys.com/2026/03/10/crack-armor.txt

For Debian 11 bullseye, these problems have been fixed in version 5.10.251-1. This version also fixes a regression in the previous update. It additionally includes many more bug fixes from stable updates 5.10.250 and 5.10.251.

We recommend that you upgrade your linux packages.

For the detailed security status of linux please refer to its security tracker page at:
https://security-tracker.debian.org/tracker/linux

Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS Attachment:
signature.asc Description: PGP signature

Tenable has extracted the preceding description block directly from the Debian security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Upgrade the ata-modules-5.10.0-38-armmp-di packages.

See Also

https://security-tracker.debian.org/tracker/source-package/linux

https://security-tracker.debian.org/tracker/CVE-2022-50516

https://security-tracker.debian.org/tracker/CVE-2025-38201

https://security-tracker.debian.org/tracker/CVE-2025-71222

https://security-tracker.debian.org/tracker/CVE-2025-71224

https://security-tracker.debian.org/tracker/CVE-2025-71232

https://security-tracker.debian.org/tracker/CVE-2025-71235

https://security-tracker.debian.org/tracker/CVE-2025-71236

https://security-tracker.debian.org/tracker/CVE-2025-71237

https://security-tracker.debian.org/tracker/CVE-2025-71238

https://security-tracker.debian.org/tracker/CVE-2026-23112

https://security-tracker.debian.org/tracker/CVE-2026-23176

https://security-tracker.debian.org/tracker/CVE-2026-23190

https://security-tracker.debian.org/tracker/CVE-2026-23193

https://security-tracker.debian.org/tracker/CVE-2026-23198

https://security-tracker.debian.org/tracker/CVE-2026-23209

https://security-tracker.debian.org/tracker/CVE-2026-23216

https://security-tracker.debian.org/tracker/CVE-2026-23222

https://security-tracker.debian.org/tracker/CVE-2026-23229

https://security-tracker.debian.org/tracker/CVE-2026-23234

https://security-tracker.debian.org/tracker/CVE-2026-23235

https://security-tracker.debian.org/tracker/CVE-2026-23236

https://security-tracker.debian.org/tracker/CVE-2026-23237

https://security-tracker.debian.org/tracker/CVE-2026-23238

https://packages.debian.org/source/bullseye/linux

Plugin Details

Severity: High

ID: 302189

File Name: debian_DLA-4498.nasl

Version: 1.1

Type: local

Agent: unix

Published: 3/13/2026

Updated: 3/13/2026

Supported Sensors: Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2025-38201

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 6.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: p-cpe:/a:debian:debian_linux:crc-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-headers-rt-armmp, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-cloud-amd64-dbg, p-cpe:/a:debian:debian_linux:scsi-core-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-armmp-lpae, p-cpe:/a:debian:debian_linux:input-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:pata-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:mmc-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:isofs-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:uinput-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:i2c-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-source, p-cpe:/a:debian:debian_linux:libcpupower1, p-cpe:/a:debian:debian_linux:linux-config-5.10, p-cpe:/a:debian:debian_linux:linux-source-5.10, p-cpe:/a:debian:debian_linux:linux-compiler-gcc-10-x86, p-cpe:/a:debian:debian_linux:linux-image-rt-686-pae-dbg, p-cpe:/a:debian:debian_linux:nic-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:usb-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:ata-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:cdrom-core-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:jfs-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:isofs-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-support-5.10.0-38, p-cpe:/a:debian:debian_linux:crypto-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:udf-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-doc-5.10, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-686, p-cpe:/a:debian:debian_linux:fb-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:ext4-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-rt-686-pae, cpe:/o:debian:debian_linux:11.0, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-rt-armmp, p-cpe:/a:debian:debian_linux:i2c-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:leds-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:nic-wireless-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-cloud-amd64, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-rt-amd64-dbg, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-rt-armmp-dbg, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-rt-arm64, p-cpe:/a:debian:debian_linux:btrfs-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:nic-shared-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-armmp-lpae-dbg, p-cpe:/a:debian:debian_linux:ppp-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-perf-5.10, p-cpe:/a:debian:debian_linux:linux-headers-armmp, p-cpe:/a:debian:debian_linux:md-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-armmp, p-cpe:/a:debian:debian_linux:sata-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:crypto-dm-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-arm64-signed-template, p-cpe:/a:debian:debian_linux:linux-image-rt-arm64-dbg, p-cpe:/a:debian:debian_linux:scsi-nic-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:crc-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:f2fs-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:scsi-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-kbuild-5.10, p-cpe:/a:debian:debian_linux:usbip, p-cpe:/a:debian:debian_linux:cdrom-core-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-i386-signed-template, p-cpe:/a:debian:debian_linux:ppp-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:scsi-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:input-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-perf, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-cloud-arm64, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-rt-686-pae-dbg, p-cpe:/a:debian:debian_linux:linux-image-cloud-arm64-dbg, p-cpe:/a:debian:debian_linux:linux-compiler-gcc-10-arm, p-cpe:/a:debian:debian_linux:pata-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-rt-armmp, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-686-pae-dbg, p-cpe:/a:debian:debian_linux:linux-image-armmp, p-cpe:/a:debian:debian_linux:linux-image-armmp-lpae, p-cpe:/a:debian:debian_linux:mmc-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-cloud-arm64-dbg, p-cpe:/a:debian:debian_linux:efi-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:fat-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-common-rt, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-armmp, p-cpe:/a:debian:debian_linux:multipath-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:nic-wireless-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:squashfs-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:nic-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-common, p-cpe:/a:debian:debian_linux:bpftool, p-cpe:/a:debian:debian_linux:f2fs-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-686-pae-dbg, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-686-pae, p-cpe:/a:debian:debian_linux:mtd-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-686-dbg, p-cpe:/a:debian:debian_linux:linux-cpupower, p-cpe:/a:debian:debian_linux:linux-image-rt-armmp-dbg, p-cpe:/a:debian:debian_linux:fb-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:crypto-dm-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:nic-usb-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:sata-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-arm64-dbg, p-cpe:/a:debian:debian_linux:nbd-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:squashfs-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-libc-dev, p-cpe:/a:debian:debian_linux:event-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-amd64-signed-template, p-cpe:/a:debian:debian_linux:loop-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:crypto-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:usb-storage-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:usb-serial-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-rt-amd64, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-arm64-dbg, p-cpe:/a:debian:debian_linux:usb-serial-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:kernel-image-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-amd64, p-cpe:/a:debian:debian_linux:btrfs-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-armmp-lpae-dbg, p-cpe:/a:debian:debian_linux:leds-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:fuse-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:md-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:scsi-nic-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:scsi-core-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:multipath-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-rt-amd64-dbg, p-cpe:/a:debian:debian_linux:usb-storage-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-amd64-dbg, p-cpe:/a:debian:debian_linux:fat-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:event-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-rt-armmp, p-cpe:/a:debian:debian_linux:linux-doc, p-cpe:/a:debian:debian_linux:kernel-image-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:mtd-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:libcpupower-dev, p-cpe:/a:debian:debian_linux:udf-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-armmp-lpae, p-cpe:/a:debian:debian_linux:usb-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:jfs-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:ext4-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:uinput-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-cloud-amd64-dbg, p-cpe:/a:debian:debian_linux:loop-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:nbd-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:fuse-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:nic-shared-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-armmp-dbg, p-cpe:/a:debian:debian_linux:efi-modules-5.10.0-38-armmp-di, p-cpe:/a:debian:debian_linux:nic-usb-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-686-dbg, p-cpe:/a:debian:debian_linux:linux-image-amd64-dbg, p-cpe:/a:debian:debian_linux:ata-modules-5.10.0-39-armmp-di, p-cpe:/a:debian:debian_linux:hyperv-daemons, p-cpe:/a:debian:debian_linux:linux-image-5.10.0-38-rt-arm64-dbg, p-cpe:/a:debian:debian_linux:linux-headers-armmp-lpae, p-cpe:/a:debian:debian_linux:linux-headers-5.10.0-38-arm64, p-cpe:/a:debian:debian_linux:linux-image-armmp-dbg

Required KB Items: Host/local_checks_enabled, Host/Debian/release, Host/Debian/dpkg-l

Exploit Ease: No known exploits are available

Patch Publication Date: 3/13/2026

Vulnerability Publication Date: 7/4/2025

Reference Information

CVE: CVE-2022-50516, CVE-2025-38201, CVE-2025-71222, CVE-2025-71224, CVE-2025-71232, CVE-2025-71235, CVE-2025-71236, CVE-2025-71237, CVE-2025-71238, CVE-2026-23112, CVE-2026-23176, CVE-2026-23190, CVE-2026-23193, CVE-2026-23198, CVE-2026-23209, CVE-2026-23216, CVE-2026-23222, CVE-2026-23229, CVE-2026-23234, CVE-2026-23235, CVE-2026-23236, CVE-2026-23237, CVE-2026-23238