CVE-2010-0410
published 2010-02-22CVE-2010-0410: drivers/connector/connector.c in the Linux kernel before 2.6.32.8 allows local users to cause a denial of service (memory consumption and system crash) by…
PriorityP414medium4.9CVSS 2.0
AVLACLAuNCNINAC
EPSS
0.45%
36.7th percentile
drivers/connector/connector.c in the Linux kernel before 2.6.32.8 allows local users to cause a denial of service (memory consumption and system crash) by sending the kernel many NETLINK_CONNECTOR messages.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| linux | linux_kernel | < 2.6.32.8 | 2.6.32.8 |
| vmware | esxi | — | — |
| vmware | vmware_tools | — | — |
| vmware | vmware_vcenter_server | — | — |
| vmware | vmware_vsphere | — | — |
| vmware | vmware_workstation | — | — |
CVSS provenance
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
vendor_redhat4.9MEDIUM
vendor_ubuntu4.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VMware
Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX
vendor_vmware·2011-02-10·CVSS 5.0
CVE-2008-0085 [MEDIUM] Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX
VMSA-2011-0003: Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX
Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX VMware Security Advisory VMware Security Advisory Advisory ID: VMware Security Advisory Synopsis: Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX VMware Security Advisory Issue date: VMware Security Advisory Updated on: VMware Security Advisory CVE numbers:
CVEs: CVE-2008-0085, CVE-2008-0086, CVE-2008-0106, CVE-2008-0107, CVE-2008-3825, CVE-2008-5416, CVE-2009-1384, CVE-2009-2693, CVE-2009-2901, CVE-2009-2902, CVE-2009-3548, CVE-2009-3555, CVE-2009-4308, CVE-2010-0003, CVE-2010-0007, CVE-2010-0008, CVE-2010-0082, CVE-2010-0084, CVE-2010-0085,
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2010-03-17·CVSS 4.7
CVE-2010-0307 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Linux kernel vulnerabilities
Mathias Krause discovered that the Linux kernel did not correctly handle
missing ELF interpreters. A local attacker could exploit this to cause the
system to crash, leading to a denial of service. (CVE-2010-0307)
Marcelo Tosatti discovered that the Linux kernel's hardware virtualization
did not correctly handle reading the /dev/port special device. A local
attacker in a guest operating system could issue a specific read that
would cause the host system to crash, leading to a denial of service.
(CVE-2010-0309)
Sebastian Krahmer discovered that the Linux kernel did not correctly
handle netlink connector messages. A local attacker could exploit this
to consume kernel memory, leading to a denial of service. (CVE-2010
Red Hat
kernel: OOM/crash in drivers/connector
vendor_redhat·2010-02-02·CVSS 4.9
CVE-2010-0410 [MEDIUM] kernel: OOM/crash in drivers/connector
kernel: OOM/crash in drivers/connector
drivers/connector/connector.c in the Linux kernel before 2.6.32.8 allows local users to cause a denial of service (memory consumption and system crash) by sending the kernel many NETLINK_CONNECTOR messages.
Statement: This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 3 and 4, as they do not include support for kernel connectors. Future updates in Red Hat Enterprise Linux 5 and Red Hat Enterprise MRG may address this flaw.
VulDB
Linux Kernel 2.6.23 resource management (Nessus ID 47271 / ID 165591)
vuldb·2026-05-01·CVSS 4.9
CVE-2010-0410 [MEDIUM] Linux Kernel 2.6.23 resource management (Nessus ID 47271 / ID 165591)
A vulnerability was found in Linux Kernel 2.6.23. It has been classified as problematic. This affects an unknown function. The manipulation leads to improper resource management.
This vulnerability is uniquely identified as CVE-2010-0410. Local access is required to approach this attack. No exploit exists.
GHSA
GHSA-6fx5-48vv-pv9j: drivers/connector/connector
ghsa_unreviewed·2022-05-02
CVE-2010-0410 [MEDIUM] GHSA-6fx5-48vv-pv9j: drivers/connector/connector
drivers/connector/connector.c in the Linux kernel before 2.6.32.8 allows local users to cause a denial of service (memory consumption and system crash) by sending the kernel many NETLINK_CONNECTOR messages.
No detection rules found.
No public exploits indexed.
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=f98bfbd78c37c5946cc53089da32a5f741efdeb7http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035070.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/035159.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-03/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-03/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-03/msg00007.htmlhttp://secunia.com/advisories/38492http://secunia.com/advisories/38557http://secunia.com/advisories/38779http://secunia.com/advisories/38922http://secunia.com/advisories/39033http://secunia.com/advisories/39649http://secunia.com/advisories/39742http://secunia.com/advisories/43315http://support.avaya.com/css/P8/documents/100088287http://www.debian.org/security/2010/dsa-1996http://www.debian.org/security/2010/dsa-2005http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.8http://www.mandriva.com/security/advisories?name=MDVSA-2010:088http://www.novell.com/linux/security/advisories/2010_23_kernel.htmlhttp://www.openwall.com/lists/oss-security/2010/02/03/1http://www.openwall.com/lists/oss-security/2010/02/03/3http://www.redhat.com/support/errata/RHSA-2010-0161.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0398.htmlhttp://www.securityfocus.com/archive/1/516397/100/0/threadedhttp://www.securityfocus.com/bid/38058http://www.ubuntu.com/usn/USN-914-1http://www.vmware.com/security/advisories/VMSA-2011-0003.htmlhttp://www.vupen.com/english/advisories/2010/0638https://bugzilla.redhat.com/show_bug.cgi?id=561682https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10903http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=f98bfbd78c37c5946cc53089da32a5f741efdeb7http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035070.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/035159.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-03/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-03/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-03/msg00007.htmlhttp://secunia.com/advisories/38492http://secunia.com/advisories/38557http://secunia.com/advisories/38779http://secunia.com/advisories/38922http://secunia.com/advisories/39033http://secunia.com/advisories/39649http://secunia.com/advisories/39742http://secunia.com/advisories/43315http://support.avaya.com/css/P8/documents/100088287http://www.debian.org/security/2010/dsa-1996http://www.debian.org/security/2010/dsa-2005http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.8http://www.mandriva.com/security/advisories?name=MDVSA-2010:088http://www.novell.com/linux/security/advisories/2010_23_kernel.htmlhttp://www.openwall.com/lists/oss-security/2010/02/03/1http://www.openwall.com/lists/oss-security/2010/02/03/3http://www.redhat.com/support/errata/RHSA-2010-0161.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0398.htmlhttp://www.securityfocus.com/archive/1/516397/100/0/threadedhttp://www.securityfocus.com/bid/38058http://www.ubuntu.com/usn/USN-914-1http://www.vmware.com/security/advisories/VMSA-2011-0003.htmlhttp://www.vupen.com/english/advisories/2010/0638https://bugzilla.redhat.com/show_bug.cgi?id=561682https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10903
2010-02-22
Published