VDB

CVE-2010-2537

CVE-2010-2537 PUBLISHED CVSS 7.099999904632568 HIGH

The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the Linux kernel before 2.6.35 allows local users to overwrite an append-only file via a (1) BTRFS_IOC_CLONE or (2) BTRFS_IOC_CLONE_RANGE ioctl call that specifies this file as a donor.

EPSS 0.09% · 25.6th percentile

Risk Scores

CVSS 3.1
7.099999904632568
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
EPSS Score
0.09%
25.6th percentile

Affected Products

VendorProductVersions
linuxlinux_kernel0
susesuse_linux_enterprise_server11
n/an/a*
susesuse_linux_enterprise_desktop11
canonicalubuntu_linux10.04, 9.10, 10.10
suselinux_enterprise_high_availability_extension11

Timeline

  • Sep 30, 2010 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 13, 2022 CVE Updated
  • May 20, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 9, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 2, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›