CVE-2010-3081
The compat_alloc_user_space functions in include/asm/compat.h files in the Linux kernel before 2.6.36-rc4-git2 on 64-bit platforms do not properly allocate the userspace memory required for the 32-bit compatibility layer, which allows local users to gain privileges by leveraging the ability of the compat_mc_getsockopt function (aka the MCAST_MSFILTER getsockopt support) to control a certain length value, related to a "stack pointer underflow" issue, as exploited in the wild in September 2010.
- Affected products
- Linux Kernel, Red Hat, Suse Linux Enterprise, Suse
- Linux Linux Kernel
- ≤ 2.6.35.4, 2.6.36
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 3.5% (88th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2010-09-24
CVE-2010-3081 at NVD
5 known exploits for CVE-2010-3081
Proof-of-concept code and exploit modules indexed by Sploitus
Linux_Exploit_Suggester
[Linux Exploit Suggester] Grab the Linux Operating Systems release version, and return a suggestive list of possible exploits
kernel-2.6.18.194 */*e15 */* 2010 Local Root Exploit
kernel-2.6.18-164 2010 Local Root Exploit
Linux Kernel 2.6.27 < 2.6.36 (RedHat x86-64) - 'compat' Local Privilege Escalation