CVE-2010-2942
kernel: net sched: fix some kernel memory leaks
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initialize certain structure members when performing dump operations, which allows local users to obtain potentially sensitive information from kernel memory via vectors related to (1) the tcf_gact_dump function in net/sched/act_gact.c, (2) the tcf_mirred_dump function in net/sched/act_mirred.c, (3) the tcf_nat_dump function in net/sched/act_nat.c, (4) the tcf_simp_dump function in net/sched/act_simple.c, and (5) the tcf_skbedit_dump function in net/sched/act_skbedit.c.
La implementación de acciones en la funcionalidad de encolado de red en el kernel Linx anterior a v2.6.36-rc2 no inicializa apropiadamente ciertos miembros de estructura cuando se realizan acciones de volcado, lo que permite a usuarios locales obtener información potencialmente sensible de la memoria del kernel a través de vectores relacionados con (1) la funcion tcf_gact_dump en net/sched/act_gact.c, (2) la funcion tcf_mirred_dump en net/sched/act_mirred.c, (3) la funcion tcf_nat_dump en net/sched/act_nat.c, (4) la funcion tcf_simp_dump en net/sched/act_simple.c, y (5) la funcion tcf_skbedit_dump en net/sched/act_skbedit.c.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2010-08-04 CVE Reserved
- 2010-09-21 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-07 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-401: Missing Release of Memory after Effective Lifetime
CAPEC
References (24)
URL | Tag | Source |
---|---|---|
http://git.kernel.org/?p=linux/kernel/git/davem/net-2.6.git%3Ba=commit%3Bh=1c40be12f7d8ca1d387510d39787b12e512a7ce8 | X_refsource_confirm | |
http://secunia.com/advisories/41512 | Broken Link | |
http://secunia.com/advisories/46397 | Broken Link | |
http://support.avaya.com/css/P8/documents/100113326 | Third Party Advisory | |
http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.36-rc2 | Broken Link | |
http://www.securityfocus.com/archive/1/520102/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/42529 | Third Party Advisory | |
http://www.vmware.com/security/advisories/VMSA-2011-0012.html | Third Party Advisory | |
http://www.vupen.com/english/advisories/2010/2430 | Broken Link | |
http://www.vupen.com/english/advisories/2011/0298 | Broken Link |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://patchwork.ozlabs.org/patch/61857 | 2023-02-13 | |
http://www.openwall.com/lists/oss-security/2010/08/18/1 | 2023-02-13 | |
http://www.openwall.com/lists/oss-security/2010/08/19/4 | 2023-02-13 | |
https://bugzilla.redhat.com/show_bug.cgi?id=624903 | 2010-10-19 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | <= 2.6.35.13 Search vendor "Linux" for product "Linux Kernel" and version " <= 2.6.35.13" | - |
Affected
| ||||||
Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | 2.6.36 Search vendor "Linux" for product "Linux Kernel" and version "2.6.36" | - |
Affected
| ||||||
Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | 2.6.36 Search vendor "Linux" for product "Linux Kernel" and version "2.6.36" | rc1 |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 6.06 Search vendor "Canonical" for product "Ubuntu Linux" and version "6.06" | - |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 8.04 Search vendor "Canonical" for product "Ubuntu Linux" and version "8.04" | - |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 9.04 Search vendor "Canonical" for product "Ubuntu Linux" and version "9.04" | - |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 9.10 Search vendor "Canonical" for product "Ubuntu Linux" and version "9.10" | - |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 10.04 Search vendor "Canonical" for product "Ubuntu Linux" and version "10.04" | - |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 10.10 Search vendor "Canonical" for product "Ubuntu Linux" and version "10.10" | - |
Affected
| ||||||
Opensuse Search vendor "Opensuse" | Opensuse Search vendor "Opensuse" for product "Opensuse" | 11.1 Search vendor "Opensuse" for product "Opensuse" and version "11.1" | - |
Affected
| ||||||
Opensuse Search vendor "Opensuse" | Opensuse Search vendor "Opensuse" for product "Opensuse" | 11.3 Search vendor "Opensuse" for product "Opensuse" and version "11.3" | - |
Affected
| ||||||
Suse Search vendor "Suse" | Suse Linux Enterprise Desktop Search vendor "Suse" for product "Suse Linux Enterprise Desktop" | 10 Search vendor "Suse" for product "Suse Linux Enterprise Desktop" and version "10" | sp3 |
Affected
| ||||||
Suse Search vendor "Suse" | Suse Linux Enterprise Desktop Search vendor "Suse" for product "Suse Linux Enterprise Desktop" | 11 Search vendor "Suse" for product "Suse Linux Enterprise Desktop" and version "11" | - |
Affected
| ||||||
Suse Search vendor "Suse" | Suse Linux Enterprise Desktop Search vendor "Suse" for product "Suse Linux Enterprise Desktop" | 11 Search vendor "Suse" for product "Suse Linux Enterprise Desktop" and version "11" | sp1 |
Affected
| ||||||
Suse Search vendor "Suse" | Suse Linux Enterprise Server Search vendor "Suse" for product "Suse Linux Enterprise Server" | 10 Search vendor "Suse" for product "Suse Linux Enterprise Server" and version "10" | sp3 |
Affected
| ||||||
Suse Search vendor "Suse" | Suse Linux Enterprise Server Search vendor "Suse" for product "Suse Linux Enterprise Server" | 11 Search vendor "Suse" for product "Suse Linux Enterprise Server" and version "11" | - |
Affected
| ||||||
Suse Search vendor "Suse" | Suse Linux Enterprise Server Search vendor "Suse" for product "Suse Linux Enterprise Server" | 11 Search vendor "Suse" for product "Suse Linux Enterprise Server" and version "11" | sp1 |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura Communication Manager Search vendor "Avaya" for product "Aura Communication Manager" | 5.2 Search vendor "Avaya" for product "Aura Communication Manager" and version "5.2" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura Presence Services Search vendor "Avaya" for product "Aura Presence Services" | 6.0 Search vendor "Avaya" for product "Aura Presence Services" and version "6.0" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura Presence Services Search vendor "Avaya" for product "Aura Presence Services" | 6.1 Search vendor "Avaya" for product "Aura Presence Services" and version "6.1" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura Presence Services Search vendor "Avaya" for product "Aura Presence Services" | 6.1.1 Search vendor "Avaya" for product "Aura Presence Services" and version "6.1.1" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura Session Manager Search vendor "Avaya" for product "Aura Session Manager" | 1.1 Search vendor "Avaya" for product "Aura Session Manager" and version "1.1" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura Session Manager Search vendor "Avaya" for product "Aura Session Manager" | 5.2 Search vendor "Avaya" for product "Aura Session Manager" and version "5.2" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura Session Manager Search vendor "Avaya" for product "Aura Session Manager" | 6.0 Search vendor "Avaya" for product "Aura Session Manager" and version "6.0" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura System Manager Search vendor "Avaya" for product "Aura System Manager" | 5.2 Search vendor "Avaya" for product "Aura System Manager" and version "5.2" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura System Manager Search vendor "Avaya" for product "Aura System Manager" | 6.0 Search vendor "Avaya" for product "Aura System Manager" and version "6.0" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura System Manager Search vendor "Avaya" for product "Aura System Manager" | 6.1 Search vendor "Avaya" for product "Aura System Manager" and version "6.1" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura System Manager Search vendor "Avaya" for product "Aura System Manager" | 6.1.1 Search vendor "Avaya" for product "Aura System Manager" and version "6.1.1" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura System Platform Search vendor "Avaya" for product "Aura System Platform" | 1.1 Search vendor "Avaya" for product "Aura System Platform" and version "1.1" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura System Platform Search vendor "Avaya" for product "Aura System Platform" | 6.0 Search vendor "Avaya" for product "Aura System Platform" and version "6.0" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Aura System Platform Search vendor "Avaya" for product "Aura System Platform" | 6.0 Search vendor "Avaya" for product "Aura System Platform" and version "6.0" | sp1 |
Affected
| ||||||
Avaya Search vendor "Avaya" | Iq Search vendor "Avaya" for product "Iq" | 5.0 Search vendor "Avaya" for product "Iq" and version "5.0" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Iq Search vendor "Avaya" for product "Iq" | 5.1 Search vendor "Avaya" for product "Iq" and version "5.1" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Voice Portal Search vendor "Avaya" for product "Voice Portal" | 5.0 Search vendor "Avaya" for product "Voice Portal" and version "5.0" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Voice Portal Search vendor "Avaya" for product "Voice Portal" | 5.1 Search vendor "Avaya" for product "Voice Portal" and version "5.1" | - |
Affected
| ||||||
Avaya Search vendor "Avaya" | Voice Portal Search vendor "Avaya" for product "Voice Portal" | 5.1 Search vendor "Avaya" for product "Voice Portal" and version "5.1" | sp1 |
Affected
| ||||||
Vmware Search vendor "Vmware" | Esx Search vendor "Vmware" for product "Esx" | 4.0 Search vendor "Vmware" for product "Esx" and version "4.0" | - |
Affected
| ||||||
Vmware Search vendor "Vmware" | Esx Search vendor "Vmware" for product "Esx" | 4.1 Search vendor "Vmware" for product "Esx" and version "4.1" | - |
Affected
|