CVE-2010-2492

Buffer overflow in the ecryptfs_uid_hash macro in fs/ecryptfs/messaging.c in the eCryptfs subsystem in the Linux kernel before 2.6.35 might allow local users to gain privileges or cause a denial of service (system crash) via unspecified vectors.
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 11%
VendorProductVersion
linuxlinux_kernel
𝑥
< 2.6.35
vmwareesx
4.0
vmwareesx
4.1
avayaaura_communication_manager
5.2
avayaaura_presence_services
6.0
avayaaura_presence_services
6.1
avayaaura_presence_services
6.1.1
avayaaura_session_manager
1.1
avayaaura_session_manager
5.2
avayaaura_session_manager
6.0
avayaaura_system_manager
5.2
avayaaura_system_manager
6.0
avayaaura_system_manager
6.1
avayaaura_system_manager
6.1.1
avayaaura_system_platform
1.1
avayaaura_system_platform
6.0
avayaaura_system_platform
6.0:sp1
avayaaura_voice_portal
5.0
avayaaura_voice_portal
5.1
avayaaura_voice_portal
5.1:sp1
avayaiq
5.0
avayaiq
5.1
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
lucid
Fixed 2.6.32-24.39
released
karmic
Fixed 2.6.31-22.61
released
jaunty
Fixed 2.6.28-19.62
released
hardy
Fixed 2.6.24-28.73
released
dapper
dne
linux-source-2.6.15
lucid
dne
karmic
dne
jaunty
dne
hardy
dne
dapper
not-affected