PT-2010-2098 · Linux+1 · Linux Kernel+1

Published

2010-02-17

·

Updated

2023-02-13

·

CVE-2010-0307

CVSS v2.0

4.7

Medium

VectorAV:L/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.32.8
Description The issue is related to the load elf binary function in the Linux kernel, which does not ensure the availability of the ELF interpreter before calling the SET PERSONALITY macro. This allows local users to cause a denial of service, resulting in a system crash, by executing a 32-bit application that attempts to run a 64-bit application and then triggers a segmentation fault.
Recommendations For Linux kernel versions prior to 2.6.32.8, update to version 2.6.32.8 or later to resolve the issue.

Exploit

Fix

Related Identifiers

CVE-2010-0307
DSA-1996-1
RHSA-2010:0146
RHSA-2010:0398
RHSA-2010:0771
RHSA-2010_0146
RHSA-2010_0398

Affected Products

Linux Kernel
Red Hat