Rocky Linux 8.6 [CIQ] Security Update: slirp4netns / slirp4netns-debuginfo / slirp4netns-debugsource Multiple Vulnerabilities (ciqsa-2026_0858)

critical Nessus Plugin ID 354237

Synopsis

The Rocky Linux host is missing one or more security updates.

Description

The Rocky Linux 8.6 host has packages installed that are affected by multiple vulnerabilities as referenced in the CIQ ciqsa-2026_0858 advisory.

This advisory aggregates security fixes for the slirp4netns SRPM in CIQ LTS 8.6. It addresses 37 CVEs:
CVE-2021-36221, CVE-2021-41190, CVE-2022-1705, CVE-2022-1708, CVE-2022-1962, and 32 more.

Tenable has extracted the preceding description block directly from the CIQ security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages based on the guidance in CIQ advisory ciqsa-2026_0858.

See Also

https://github.com/ctrliq/advisories

http://www.nessus.org/u?030ef33f

http://www.nessus.org/u?0d52bf5d

http://www.nessus.org/u?0d809904

http://www.nessus.org/u?114325d0

http://www.nessus.org/u?153e1838

http://www.nessus.org/u?1cd5ee2b

http://www.nessus.org/u?272d52c6

http://www.nessus.org/u?2a5d0af2

http://www.nessus.org/u?5b1e453e

http://www.nessus.org/u?620894de

http://www.nessus.org/u?62907e08

http://www.nessus.org/u?63a9719b

http://www.nessus.org/u?6761818e

http://www.nessus.org/u?683d9850

http://www.nessus.org/u?6b919933

http://www.nessus.org/u?7100cc57

http://www.nessus.org/u?7cf053e3

http://www.nessus.org/u?7e07d93b

http://www.nessus.org/u?81773e0a

http://www.nessus.org/u?8965d933

http://www.nessus.org/u?8b20688d

http://www.nessus.org/u?8c5c42c9

http://www.nessus.org/u?8d3f13be

http://www.nessus.org/u?90a6f8c8

http://www.nessus.org/u?a1d48a2e

http://www.nessus.org/u?a4094a3b

http://www.nessus.org/u?a89d2cf6

http://www.nessus.org/u?aa4c6092

http://www.nessus.org/u?ad255485

http://www.nessus.org/u?b52cea36

http://www.nessus.org/u?bacae9bd

http://www.nessus.org/u?be139524

http://www.nessus.org/u?c24085cf

http://www.nessus.org/u?ccd05fba

http://www.nessus.org/u?d11789a6

http://www.nessus.org/u?d63bbfaa

http://www.nessus.org/u?d7f41141

http://www.nessus.org/u?e0061b35

Plugin Details

Severity: Critical

ID: 354237

File Name: ciq_rocky_linux_8_6_ciqsa-2026_0858.nasl

Version: 1.1

Type: Local

Published: 10/1/2026

Updated: 10/1/2026

Supported Sensors: Nessus Agent, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.6

Percentile: 98.48

Vendor

Vendor Severity: Critical

CVSS v2

Risk Factor: Medium

Base Score: 4.6

Temporal Score: 3.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P

CVSS Score Source: CVE-2022-29162

CVSS v3

Risk Factor: Critical

Base Score: 9.8

Temporal Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

CVSS Score Source: CVE-2023-24540

Vulnerability Information

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/RockyLinux/release, Host/RockyLinux/rpm-list, Host/OS/extended-third-party

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 9/1/2026

Vulnerability Publication Date: 8/8/2021

Reference Information

CVE: CVE-2021-36221, CVE-2021-41190, CVE-2022-1705, CVE-2022-1708, CVE-2022-1962, CVE-2022-27191, CVE-2022-27664, CVE-2022-28131, CVE-2022-29162, CVE-2022-30629, CVE-2022-30630, CVE-2022-30631, CVE-2022-30632, CVE-2022-30633, CVE-2022-30635, CVE-2022-3064, CVE-2022-32148, CVE-2022-32149, CVE-2022-32189, CVE-2022-41717, CVE-2022-41723, CVE-2022-41724, CVE-2022-41725, CVE-2023-0778, CVE-2023-24534, CVE-2023-24536, CVE-2023-24537, CVE-2023-24538, CVE-2023-24539, CVE-2023-24540, CVE-2023-25173, CVE-2023-25809, CVE-2023-27561, CVE-2023-28642, CVE-2023-29400, CVE-2023-29406, CVE-2023-3978