Tracker / CVE-2010-2954
CVE-2010-2954
Medium 4.9
The irda_bind function in net/irda/af_irda.c in the Linux kernel before 2.6.36-rc3-next-20100901 does not properly handle failure of the irda_open_tsap function, which allows local users to cause a denial of service (NULL pointer dereference and panic) and possibly have unspecified other impact via multiple unsuccessful calls to bind on an AF_IRDA (aka PF_IRDA) socket.
Affected products and versions
| canonical | ubuntu_linux |
|---|---|
| linux | linux_kernel |
| linux | linux_kernel · … → 2.6.36 |
| opensuse | opensuse |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_server |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.