CVE-2010-3081

CVSS v3.1 7.8 (High)
78% Progress
CVSS v2.0 7.2 (High)
72% Progress
EPSS 0.04 % (5th)
0.04% Progress
Affected Products 4
Advisories 17

The compat_alloc_user_space functions in include/asm/compat.h files in the Linux kernel before 2.6.36-rc4-git2 on 64-bit platforms do not properly allocate the userspace memory required for the 32-bit compatibility layer, which allows local users to gain privileges by leveraging the ability of the compat_mc_getsockopt function (aka the MCAST_MSFILTER getsockopt support) to control a certain length value, related to a "stack pointer underflow" issue, as exploited in the wild in September 2010.

Weaknesses
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2010-09-24 20:00:02
(14 years ago)
Updated Date
2023-02-13 04:22:09
(19 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel 2.6.35.4 and prior versions cpe:2.3:o:linux:linux_kernel <= 2.6.35.4
  Linux Kernel 2.6.36 cpe:2.3:o:linux:linux_kernel:2.6.36:-
  Linux Kernel 2.6.36 Rc1 cpe:2.3:o:linux:linux_kernel:2.6.36:rc1
  Linux Kernel 2.6.36 Rc2 cpe:2.3:o:linux:linux_kernel:2.6.36:rc2
  Linux Kernel 2.6.36 Rc3 cpe:2.3:o:linux:linux_kernel:2.6.36:rc3

Configuration #2

    CPE23 From Up To
  Vmware Esx 4.0 cpe:2.3:o:vmware:esx:4.0
  Vmware Esx 4.1 cpe:2.3:o:vmware:esx:4.1

Configuration #3

    CPE23 From Up To
  Suse Linux Enterprise Desktop 11 SP1 cpe:2.3:o:suse:suse_linux_enterprise_desktop:11:sp1
  Suse Linux Enterprise Server 11 SP1 cpe:2.3:o:suse:suse_linux_enterprise_server:11:sp1
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...