CVE-2010-0747: High severity linbit drbd vulnerability
Published Oct 30, 2019
·Updated
drbd8 allows local users to bypass intended restrictions for certain actions via netlink packets, similar to CVE-2009-3725.
Affected Software
5 affected components
debian/drbd8
debian/linux-2.6
debian/linux-modules-extra-2.6
LINBIT Drbd8=2.6.26
Debian Debian Linux=5.0
Event History
Oct 30, 2019
CVE Published
via MITRE·10:27 PM
Data Sourced
via MITRE·10:27 PM
DescriptionWeakness
Data Sourced
11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2010-0747?
CVE-2010-0747 is a vulnerability in the drbd8 package that allows local users to bypass intended restrictions for certain actions via netlink packets.
2
How severe is CVE-2010-0747?
The severity of CVE-2010-0747 is high with a CVSS score of 7.8.
3
Which software is affected by CVE-2010-0747?
The drbd8 package and certain versions of Linux kernel are affected by CVE-2010-0747.
4
How can I fix CVE-2010-0747?
To fix CVE-2010-0747, you should update the affected drbd8 package and Linux kernel to a secure version.
5
Where can I find more information about CVE-2010-0747?
You can find more information about CVE-2010-0747 on the Debian Security Advisory DSA-2015, the Debian Security Tracker, and the Debian bug report.