PT-2010-2187 · Linux+1 · Linux Kernel+1

Ramon De C. Valle

·

Published

2010-02-17

·

Updated

2023-02-13

·

CVE-2010-0415

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.33-rc7
Description The issue is related to the do pages move function in mm/migrate.c, which does not validate node values. This allows local users to read arbitrary kernel memory locations, cause a denial of service (OOPS), and possibly have other unspecified impacts by specifying a node that is not part of the kernel's node set.
Recommendations For Linux kernel versions prior to 2.6.33-rc7, update to version 2.6.33-rc7 or later to resolve the issue.

Exploit

Fix

Related Identifiers

CVE-2010-0415
DSA-1996-1
DSA-2003-1
DSA-2005-1
RHSA-2010:0147
RHSA-2010:0161
RHSA-2010_0147

Affected Products

Linux Kernel
Red Hat