CVE-2010-2524: High severity linux kernel vulnerability

Published Jul 7, 2010
·
Updated

Description of problem: CIFS has the ability to chase MS-DFS referrals. In order to do this it has to be able to resolve hostnames into IP addresses. For this, it uses the keys API to upcall to the cifs.upcall userspace helper. It then resolves the name and hands the address back to the kernel.

The dnsresolver upcall currently used by CIFS is susceptible to cache stuffing. It's possible for a malicious user to stuff the keyring with the results of a lookup, and then trick the server into mounting a server of his choosing.

Other sources

The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIGCIFSDFSUPCALL is enabled, relies on a user's keyring for the dnsresolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an addkey call, related to a "cache stuffing" issue and MS-DFS referrals.

Launchpad

Affected Software

12 affected components
debian/linux-2.6
Linux Linux kernel<2.6.35
VMware ESX=4.1
VMware ESX=4.0
Canonical Ubuntu Linux=10.10
Canonical Ubuntu Linux=9.04
Canonical Ubuntu Linux=9.10
Canonical Ubuntu Linux=10.04
Canonical Ubuntu Linux=8.04
Canonical Ubuntu Linux=6.06
SUSE SUSE Linux Enterprise Server=11-sp1
SUSE SUSE Linux Enterprise Desktop=11-sp1

Event History

Jul 7, 2010
Data Sourced
via Red Hat·01:20 PM
DescriptionSeverityAffected Software
Sep 8, 2010
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Jan 11, 2024
Data Sourced
via Launchpad·09:51 PM
Description
Sep 15, 2024
Data Sourced
via Ubuntu·10:39 PM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2010-2524?

CVE-2010-2524 has a medium severity rating due to potential security implications in CIFS handling of MS-DFS referrals.

2

How do I fix CVE-2010-2524?

To fix CVE-2010-2524, ensure your system is updated with the latest kernel patches that address this vulnerability.

3

Which systems are affected by CVE-2010-2524?

CVE-2010-2524 affects various versions of the Linux kernel and VMware ESX, along with several Ubuntu and SUSE Linux distributions.

4

What are the implications of CVE-2010-2524?

CVE-2010-2524 could potentially allow an attacker to exploit the CIFS functionality, leading to unauthorized access or denial of service.

5

Is CVE-2010-2524 still a concern in modern systems?

While CVE-2010-2524 was a notable vulnerability, modern systems with updated kernels should have mitigated its risks significantly.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203