Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-4160

Опубликовано: 07 янв. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.9

Описание

Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the Linux kernel before 2.6.36.2 allow local users to cause a denial of service (heap memory corruption and panic) or possibly gain privileges via a crafted sendto call.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

2.6.39-0.0
hardy

released

2.6.24-28.86
karmic

released

2.6.31-22.73
lucid

released

2.6.32-28.52
maverick

released

2.6.35-25.43
natty

not-affected

2.6.37-2.9
upstream

released

2.6.37~rc1

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

DNE

karmic

released

2.6.31-307.27
lucid

released

2.6.32-312.24
maverick

ignored

end of life
natty

DNE

upstream

released

2.6.37~rc1

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

DNE

karmic

released

2.6.31-112.30
lucid

released

2.6.31-610.27
maverick

DNE

natty

DNE

upstream

released

2.6.37~rc1

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

DNE

karmic

DNE

lucid

released

2.6.35-25.44~lucid1
maverick

DNE

natty

DNE

upstream

released

2.6.37~rc1

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

not-affected

2.6.38-1.27~lucid1
maverick

DNE

natty

DNE

upstream

released

2.6.37~rc1

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

DNE

karmic

ignored

end of life
lucid

released

2.6.32-214.30
maverick

released

2.6.32-414.30
natty

DNE

upstream

released

2.6.37~rc1

Показывать по

РелизСтатусПримечание
dapper

released

2.6.15-55.93
devel

DNE

hardy

DNE

karmic

DNE

lucid

DNE

maverick

DNE

natty

DNE

upstream

released

2.6.37~rc1

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

2.6.38-1309.13
hardy

DNE

karmic

DNE

lucid

DNE

maverick

released

2.6.35-903.23
natty

not-affected

2.6.38-1201.2
upstream

released

2.6.37~rc1

Показывать по

EPSS

Процентиль: 38%
0.00162
Низкий

6.9 Medium

CVSS2

Связанные уязвимости

redhat
почти 15 лет назад

Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the Linux kernel before 2.6.36.2 allow local users to cause a denial of service (heap memory corruption and panic) or possibly gain privileges via a crafted sendto call.

nvd
больше 14 лет назад

Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the Linux kernel before 2.6.36.2 allow local users to cause a denial of service (heap memory corruption and panic) or possibly gain privileges via a crafted sendto call.

debian
больше 14 лет назад

Multiple integer overflows in the (1) pppol2tp_sendmsg function in net ...

github
больше 3 лет назад

Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the Linux kernel before 2.6.36.2 allow local users to cause a denial of service (heap memory corruption and panic) or possibly gain privileges via a crafted sendto call.

oracle-oval
больше 14 лет назад

ELSA-2011-0007: kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 38%
0.00162
Низкий

6.9 Medium

CVSS2

Уязвимость CVE-2010-4160