CVE-2010-3865: Buffer Overflow
Integer overflow in the rdsrdmapages function in net/rds/rdma.c in the Linux kernel allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted iovec struct in a Reliable Datagram Sockets (RDS) request, which triggers a buffer overflow.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3865?
CVE-2010-3865 has a high severity due to its potential to cause denial of service and arbitrary code execution.
How do I fix CVE-2010-3865?
To mitigate CVE-2010-3865, update the Linux kernel to a version later than 2.6.36 or apply relevant security patches.
What systems are affected by CVE-2010-3865?
CVE-2010-3865 affects various Linux distributions, particularly those using kernel versions up to 2.6.36.
Is CVE-2010-3865 remotely exploitable?
CVE-2010-3865 is not remotely exploitable; it requires local user access to exploit the vulnerability.
What type of attack does CVE-2010-3865 facilitate?
CVE-2010-3865 can lead to denial of service attacks by crashing the system and may allow for arbitrary code execution.