PT-2010-4091 · Linux · Linux Kernel

Dan Rosenberg

·

Published

2010-09-30

·

Updated

2023-02-13

·

CVE-2010-2538

CVSS v2.0

4.9

Medium

VectorAV:L/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.35
Description The issue is related to an integer overflow in the btrfs ioctl clone function, which might allow local users to obtain sensitive information. This can be achieved via a BTRFS IOC CLONE RANGE ioctl call.
Recommendations For versions prior to 2.6.35, update to version 2.6.35 or later to resolve the issue.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2010-2538

Affected Products

Linux Kernel