Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2010-4650

Overview

Vulnerability Score 4.6 4.6
CVE Id CVE-2010-4650
Last Modified 22 Jun 2012 11:24:39
Published 21 Jun 2012 07:55:01
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2010-4650

Summary

Buffer overflow in the fuse_do_ioctl function in fs/fuse/file.c in the Linux kernel before 2.6.37 allows local users to cause a denial of service or possibly have unspecified other impact by leveraging the ability to operate a CUSE server.

Vulnerable Systems

Operating System

  • Linux Kernel 2.6.36.1

  • Linux Kernel 2.6.36.2

  • Linux Kernel 2.6.36.3

  • Linux Kernel 2.6.36.4


References

CONFIRM - https://github.com/torvalds/linux/commit/7572777eef78ebdee1ecb7c258c0ef94d35bad16

CONFIRM - https://bugzilla.redhat.com/show_bug.cgi?id=667892

MLIST - [oss-security] 20110106 Re: CVE Request: kernel [Re: Security review of 2.6.32.28]

CONFIRM - http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=7572777eef78ebdee1ecb7c258c0ef94d35bad16

CONFIRM - http://ftp.osuosl.org/pub/linux/kernel/v2.6/ChangeLog-2.6.37


Last Updated: 27 May 2016 10:56:34