CVE-2010-4162Integer Overflow or Wraparound in Kernel

Severity
4.7MEDIUMNVD
EPSS
0.1%
top 75.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 3
Latest updateMay 13

Description

Multiple integer overflows in fs/bio.c in the Linux kernel before 2.6.36.2 allow local users to cause a denial of service (system crash) via a crafted device ioctl to a SCSI device.

CVSS vector

AV:L/AC:M/C:N/I:N/A:CExploitability: 3.4 | Impact: 6.9

Affected Packages6 packages

Also affects: Fedora 13

🔴Vulnerability Details

2
GHSA
GHSA-h68p-8jj4-mh9x: Multiple integer overflows in fs/bio2022-05-13
CVEList
CVE-2010-4162: Multiple integer overflows in fs/bio2011-01-03

📋Vendor Advisories

9
Ubuntu
Linux kernel (OMAP4) vulnerabilities2011-09-13
Ubuntu
Linux kernel (i.MX51) vulnerabilities2011-09-13
Ubuntu
Linux kernel vulnerabilities2011-04-05
Ubuntu
Linux Kernel vulnerabilities (Marvell Dove)2011-03-25
Ubuntu
Linux Kernel vulnerabilities2011-03-25

💬Community

1
Bugzilla
CVE-2010-4162 kernel: bio: integer overflow page count when mapping/copying user data2010-11-12
CVE-2010-4162 — Integer Overflow or Wraparound | cvebase