VDB
CVE-2010-0426
CVE-2010-0426
PUBLISHED
The compat_alloc_user_space functions in include/asm/compat.h files in the Linux kernel before 2.6.36-rc4-git2 on 64-bit platforms do not properly allocate the userspace memory required for the 32-bit compatibility layer, which allows local users to gain privileges by leveraging the ability of the compat_mc_getsockopt function (aka the MCAST_MSFILTER getsockopt support) to control a certain length value, related to a "stack pointer underflow" issue, as exploited in the wild in September 2010.
EPSS 0.76% · 73.7th percentile
Risk Scores
EPSS Score
0.76%
73.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
Timeline
- Feb 24, 2010 CVE Published
- Sep 16, 2010 PoC Published
- Sep 6, 2015 PoC Published
- Oct 9, 2020 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Aug 31, 2022 PoC Published
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 3, 2023 EPSS Score
References
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10661 advisory
- http://isc.sans.edu/diary.html?storyid=9574 url
- ADV-2010-3117 vdb
- MDVSA-2010:198 vendor-advisory
- 20101130 VMSA-2010-0017 VMware ESX third party update for Service Console kerne mailing-list
- 20100916 Workaround for Ac1db1tch3z exploit. mailing-list
- RHSA-2010:0842 vendor-advisory
- MDVSA-2010:247 vendor-advisory
- RHSA-2010:0882 vendor-advisory
- SUSE-SA:2010:050 vendor-advisory
- http://blog.ksplice.com/2010/09/cve-2010-3081/ url
- SUSE-SR:2010:017 vendor-advisory
- http://www.vmware.com/security/advisories/VMSA-2011-0003.html url
- 20100916 Ac1db1tch3z vs x86_64 Linux Kernel mailing-list
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=c41d68a513c71e35a14f66d71782d27a79a81ea6 url
- RHSA-2010:0758 vendor-advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=634457 url
- MDVSA-2010:214 vendor-advisory
- [oss-security] 20100916 CVE-2010-3081 kernel: 64-bit Compatibility Mode Stack Pointer Underflow mailing-list
- http://www.vmware.com/security/advisories/VMSA-2010-0017.html url
…and 13 more