CVE-2010-4175

Priority
Description
Integer overflow in the rds_cmsg_rdma_args function (net/rds/rdma.c) in
Linux kernel 2.6.35 allows local users to cause a denial of service (crash)
and possibly trigger memory corruption via a crafted Reliable Datagram
Sockets (RDS) request, a different vulnerability than CVE-2010-3865.
Ubuntu-Description
Dan Rosenberg discovered that the RDS protocol did not correctly check
ioctl arguments. A local attacker could exploit this to crash the system,
leading to a denial of service.
Package
Upstream:released (2.6.37~rc3)
Package
Upstream:released (2.6.37~rc3)
Package
Upstream:released (2.6.37~rc3)
Package
Upstream:released (2.6.37~rc3)
Package
Upstream:released (2.6.37~rc3)
Package
Upstream:released (2.6.37~rc3)
Package
Upstream:released (2.6.37~rc3)
More Information

Updated: 2019-01-14 21:54:52 UTC (commit 51f9b73af244ba86b9321e46e526586c25a8e060)