cbcvebase.
CVE-2010-3874
published 2010-12-29

CVE-2010-3874: Heap-based buffer overflow in the bcm_connect function in net/can/bcm.c (aka the Broadcast Manager) in the Controller Area Network (CAN) implementation in the…

PriorityP414medium4CVSS 2.0
AVLACHAuNCNINAC
EPSS
0.40%
32.1th percentile
Heap-based buffer overflow in the bcm_connect function in net/can/bcm.c (aka the Broadcast Manager) in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.36.2 on 64-bit platforms might allow local users to cause a denial of service (memory corruption) via a connect operation.

Affected

8 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
fedoraprojectfedora
linuxlinux_kernel< 2.6.36.22.6.36.2
opensuseopensuse
opensuseopensuse
suselinux_enterprise_desktop
suselinux_enterprise_real_time_extension
suselinux_enterprise_server

CVSS provenance

nvdv2.04.0MEDIUMAV:L/AC:H/Au:N/C:N/I:N/A:C
vendor_ubuntu7.2HIGH
vendor_redhat4.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.