CVE-2010-1437
published 2010-05-07CVE-2010-1437: Race condition in the find_keyring_by_name function in security/keys/keyring.c in the Linux kernel 2.6.34-rc5 and earlier allows local users to cause a denial…
PriorityP431high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EXPLOIT
EPSS
0.66%
47.4th percentile
Race condition in the find_keyring_by_name function in security/keys/keyring.c in the Linux kernel 2.6.34-rc5 and earlier allows local users to cause a denial of service (memory corruption and system crash) or possibly have unspecified other impact via keyctl session commands that trigger access to a dead keyring that is undergoing deletion by the key_cleanup function.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| linux | linux_kernel | < 2.6.34 | 2.6.34 |
| linux | linux_kernel | — | — |
| opensuse | opensuse | — | — |
| suse | linux_enterprise_desktop | — | — |
| suse | linux_enterprise_high_availability_extension | — | — |
| suse | linux_enterprise_server | — | — |
| vmware | esxi | — | — |
| vmware | vmware_tools | — | — |
| vmware | vmware_vcenter_server | — | — |
| vmware | vmware_vsphere | — | — |
| vmware | vmware_workstation | — | — |
CVSS provenance
nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
vendor_redhat7.0HIGH
vendor_ubuntu1.2LOW
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mrjp-428h-53c5: Race condition in the find_keyring_by_name function in security/keys/keyring
ghsa_unreviewed·2022-05-02
CVE-2010-1437 [LOW] CWE-362 GHSA-mrjp-428h-53c5: Race condition in the find_keyring_by_name function in security/keys/keyring
Race condition in the find_keyring_by_name function in security/keys/keyring.c in the Linux kernel 2.6.34-rc5 and earlier allows local users to cause a denial of service (memory corruption and system crash) or possibly have unspecified other impact via keyctl session commands that trigger access to a dead keyring that is undergoing deletion by the key_cleanup function.
VMware
Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX
vendor_vmware·2011-02-10·CVSS 5.0
CVE-2008-0085 [MEDIUM] Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX
VMSA-2011-0003: Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX
Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX VMware Security Advisory VMware Security Advisory Advisory ID: VMware Security Advisory Synopsis: Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX VMware Security Advisory Issue date: VMware Security Advisory Updated on: VMware Security Advisory CVE numbers:
CVEs: CVE-2008-0085, CVE-2008-0086, CVE-2008-0106, CVE-2008-0107, CVE-2008-3825, CVE-2008-5416, CVE-2009-1384, CVE-2009-2693, CVE-2009-2901, CVE-2009-2902, CVE-2009-3548, CVE-2009-3555, CVE-2009-4308, CVE-2010-0003, CVE-2010-0007, CVE-2010-0008, CVE-2010-0082, CVE-2010-0084, CVE-2010-0085,
VMware
VMware ESX third party update for Service Console kernel
vendor_vmware·2010-11-29·CVSS 4.6
CVE-2010-0291 [MEDIUM] VMware ESX third party update for Service Console kernel
VMSA-2010-0017: VMware ESX third party update for Service Console kernel
a. Service Console OS update for COS kernel packag This patch updates the Service Console kernel to fix a stack pointer underflow issue in the 32-bit compatibility layer. Exploitation of this issue could allow a local user to gain additional privileges. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2010-3081 to this issue. Column 4 of the following table lists the action required to remediate the vulnerability in each release, if a solution is available. VMware Product ============= Product version ======== Running on ======= Replace with/ Apply Patch ================= VMware Product ============= VirtualCenter Product version ======== any Running on ======= Windows Replac
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2010-08-04·CVSS 1.2
CVE-2008-7256 [LOW] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Multiple security flaws.
Junjiro R. Okajima discovered that knfsd did not correctly handle
strict overcommit. A local attacker could exploit this to crash knfsd,
leading to a denial of service. (Only Ubuntu 6.06 LTS and 8.04 LTS were
affected.) (CVE-2008-7256, CVE-2010-1643)
Chris Guo, Jukka Taimisto, and Olli Jarva discovered that SCTP did
not correctly handle invalid parameters. A remote attacker could send
specially crafted traffic that could crash the system, leading to a
denial of service. (CVE-2010-1173)
Mario Mikocevic discovered that GFS2 did not correctly handle certain
quota structures. A local attacker could exploit this to crash the
system, leading to a denial of service. (Ubuntu 6.06 LTS was not
affected.) (CVE-2010-1436)
Toshi
Red Hat
kernel: keyrings: find_keyring_by_name() can gain the freed keyring
vendor_redhat·2010-04-23·CVSS 7.0
CVE-2010-1437 [HIGH] CWE-672 kernel: keyrings: find_keyring_by_name() can gain the freed keyring
kernel: keyrings: find_keyring_by_name() can gain the freed keyring
Race condition in the find_keyring_by_name function in security/keys/keyring.c in the Linux kernel 2.6.34-rc5 and earlier allows local users to cause a denial of service (memory corruption and system crash) or possibly have unspecified other impact via keyctl session commands that trigger access to a dead keyring that is undergoing deletion by the key_cleanup function.
Statement: This issue did not affect the version of Linux kernel as shipped with Red Hat
Enterprise Linux 3. Future kernel updates in Red Hat Enterprise Linux 4, 5 and Red Hat Enterprise MRG will address this issue.
No detection rules found.
http://lists.opensuse.org/opensuse-security-announce/2010-07/msg00006.htmlhttp://marc.info/?l=linux-kernel&m=127192182917857&w=2http://marc.info/?l=linux-kernel&m=127274294622730&w=2http://marc.info/?l=linux-kernel&m=127292492727029&w=2http://secunia.com/advisories/39830http://secunia.com/advisories/40218http://secunia.com/advisories/40645http://secunia.com/advisories/43315http://www.debian.org/security/2010/dsa-2053http://www.openwall.com/lists/oss-security/2010/04/27/2http://www.openwall.com/lists/oss-security/2010/04/28/2http://www.redhat.com/support/errata/RHSA-2010-0474.htmlhttp://www.securityfocus.com/archive/1/516397/100/0/threadedhttp://www.securityfocus.com/bid/39719http://www.vmware.com/security/advisories/VMSA-2011-0003.htmlhttp://www.vupen.com/english/advisories/2010/1857https://bugzilla.redhat.com/show_bug.cgi?id=585094https://exchange.xforce.ibmcloud.com/vulnerabilities/58254https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9715https://patchwork.kernel.org/patch/94038/https://patchwork.kernel.org/patch/94664/http://lists.opensuse.org/opensuse-security-announce/2010-07/msg00006.htmlhttp://marc.info/?l=linux-kernel&m=127192182917857&w=2http://marc.info/?l=linux-kernel&m=127274294622730&w=2http://marc.info/?l=linux-kernel&m=127292492727029&w=2http://secunia.com/advisories/39830http://secunia.com/advisories/40218http://secunia.com/advisories/40645http://secunia.com/advisories/43315http://www.debian.org/security/2010/dsa-2053http://www.openwall.com/lists/oss-security/2010/04/27/2http://www.openwall.com/lists/oss-security/2010/04/28/2http://www.redhat.com/support/errata/RHSA-2010-0474.htmlhttp://www.securityfocus.com/archive/1/516397/100/0/threadedhttp://www.securityfocus.com/bid/39719http://www.vmware.com/security/advisories/VMSA-2011-0003.htmlhttp://www.vupen.com/english/advisories/2010/1857https://bugzilla.redhat.com/show_bug.cgi?id=585094https://exchange.xforce.ibmcloud.com/vulnerabilities/58254https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9715https://patchwork.kernel.org/patch/94038/https://patchwork.kernel.org/patch/94664/
2010-05-07
Published