CVE-2010-3865

CVSS v2.0 7.2 (High)
72% Progress
EPSS 0.04 % (11th)
0.04% Progress
Affected Products 4
Advisories 13

Integer overflow in the rds_rdma_pages function in net/rds/rdma.c in the Linux kernel allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted iovec struct in a Reliable Datagram Sockets (RDS) request, which triggers a buffer overflow.

Weaknesses
CWE-190
Integer Overflow or Wraparound
Related CVEs
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2011-01-11 03:00:02
(13 years ago)
Updated Date
2023-02-13 04:27:10
(19 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel 2.6.36 and prior versions cpe:2.3:o:linux:linux_kernel <= 2.6.36

Configuration #2

    CPE23 From Up To
  Opensuse 11.2 cpe:2.3:o:opensuse:opensuse:11.2
  Opensuse 11.3 cpe:2.3:o:opensuse:opensuse:11.3
  Suse Linux Enterprise High Availability Extension 11 SP1 cpe:2.3:o:suse:linux_enterprise_high_availability_extension:11:sp1
  Suse Linux Enterprise Real Time 11 SP1 cpe:2.3:o:suse:linux_enterprise_real_time:11:sp1
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...