CVE-2010-3874

Priority
Description
Heap-based buffer overflow in the bcm_connect function in net/can/bcm.c
(aka the Broadcast Manager) in the Controller Area Network (CAN)
implementation in the Linux kernel before 2.6.36.2 on 64-bit platforms
might allow local users to cause a denial of service (memory corruption)
via a connect operation.
Ubuntu-Description
Dan Rosenberg discovered that the CAN protocol on 64bit systems did not
correctly calculate the size of certain buffers. A local attacker could
exploit this to crash the system or possibly execute arbitrary code as the
root user.
Assigned-to
apw
Package
Upstream:released (2.6.37~rc2)
Package
Upstream:released (2.6.37~rc2)
Package
Upstream:released (2.6.37~rc2)
Package
Upstream:released (2.6.37~rc2)
Package
Upstream:released (2.6.37~rc2)
Package
Upstream:released (2.6.37~rc2)
Package
Upstream:released (2.6.37~rc2)
More Information

Updated: 2019-01-14 21:54:38 UTC (commit 51f9b73af244ba86b9321e46e526586c25a8e060)