Логотип exploitDog
bind:"CVE-2010-2524"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2010-2524"

Количество 7

Количество 7

ubuntu логотип

CVE-2010-2524

почти 15 лет назад

The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCALL is enabled, relies on a user's keyring for the dns_resolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an add_key call, related to a "cache stuffing" issue and MS-DFS referrals.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2010-2524

почти 15 лет назад

The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCALL is enabled, relies on a user's keyring for the dns_resolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an add_key call, related to a "cache stuffing" issue and MS-DFS referrals.

CVSS2: 4.4
EPSS: Низкий
nvd логотип

CVE-2010-2524

почти 15 лет назад

The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCALL is enabled, relies on a user's keyring for the dns_resolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an add_key call, related to a "cache stuffing" issue and MS-DFS referrals.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2010-2524

почти 15 лет назад

The DNS resolution functionality in the CIFS implementation in the Lin ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-gh3w-mmv8-hhv4

около 3 лет назад

The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCALL is enabled, relies on a user's keyring for the dns_resolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an add_key call, related to a "cache stuffing" issue and MS-DFS referrals.

CVSS3: 7.8
EPSS: Низкий
oracle-oval логотип

ELSA-2010-0610

почти 15 лет назад

ELSA-2010-0610: kernel security and bug fix update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0652-1

около 13 лет назад

Security update for Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2010-2524

The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCALL is enabled, relies on a user's keyring for the dns_resolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an add_key call, related to a "cache stuffing" issue and MS-DFS referrals.

CVSS3: 7.8
0%
Низкий
почти 15 лет назад
redhat логотип
CVE-2010-2524

The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCALL is enabled, relies on a user's keyring for the dns_resolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an add_key call, related to a "cache stuffing" issue and MS-DFS referrals.

CVSS2: 4.4
0%
Низкий
почти 15 лет назад
nvd логотип
CVE-2010-2524

The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCALL is enabled, relies on a user's keyring for the dns_resolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an add_key call, related to a "cache stuffing" issue and MS-DFS referrals.

CVSS3: 7.8
0%
Низкий
почти 15 лет назад
debian логотип
CVE-2010-2524

The DNS resolution functionality in the CIFS implementation in the Lin ...

CVSS3: 7.8
0%
Низкий
почти 15 лет назад
github логотип
GHSA-gh3w-mmv8-hhv4

The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCALL is enabled, relies on a user's keyring for the dns_resolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an add_key call, related to a "cache stuffing" issue and MS-DFS referrals.

CVSS3: 7.8
0%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2010-0610

ELSA-2010-0610: kernel security and bug fix update (IMPORTANT)

почти 15 лет назад
suse-cvrf логотип
SUSE-SU-2015:0652-1

Security update for Kernel

около 13 лет назад

Уязвимостей на страницу