VDB
CVE-2010-2521
CVE-2010-2521
PUBLISHED
Reported by redhat · Published September 7, 2010
Multiple buffer overflows in fs/nfsd/nfs4xdr.c in the XDR implementation in the NFS server in the Linux kernel before 2.6.34-rc6 allow remote attackers to cause a denial of service (panic) or possibly execute arbitrary code via a crafted NFSv4 compound WRITE request, related to the read_buf and nfsd4_decode_compound functions.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| n/a | n/a | n/a, n/a |
Timeline
- Sep 7, 2010 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- Apr 28, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Sep 7, 2023 EPSS Score
References
- RHSA-2010:0610 vendor-advisoryx_refsource_REDHAT
- RHSA-2010:0893 vendor-advisoryx_refsource_REDHAT
- USN-1000-1 vendor-advisoryx_refsource_UBUNTU
- [oss-security] 20100707 CVE request - kernel: nfsd4: bug in read_buf mailing-listx_refsource_MLIST
- RHSA-2010:0606 vendor-advisoryx_refsource_REDHAT
- MDVSA-2010:198 vendor-advisoryx_refsource_MANDRIVA
- RHSA-2010:0907 vendor-advisoryx_refsource_REDHAT
- x_refsource_CONFIRM
- SUSE-SA:2010:040 vendor-advisoryx_refsource_SUSE
- MDVSA-2011:051 vendor-advisoryx_refsource_MANDRIVA
- 43315 third-party-advisoryx_refsource_SECUNIA
- DSA-2094 vendor-advisoryx_refsource_DEBIAN
- x_refsource_CONFIRM
- x_refsource_CONFIRM
- 1024286 vdb-entryx_refsource_SECTRACK
- 42249 vdb-entryx_refsource_BID
- ADV-2010-3050 vdb-entryx_refsource_VUPEN
- 20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX mailing-listx_refsource_BUGTRAQ
- x_refsource_CONFIRM
- [oss-security] 20100708 Re: CVE request - kernel: nfsd4: bug in read_buf mailing-listx_refsource_MLIST