Lucene search

K
prionPRIOn knowledge basePRION:CVE-2010-2954
HistorySep 03, 2010 - 8:00 p.m.

Null pointer dereference

2010-09-0320:00:00
PRIOn knowledge base
www.prio-n.com
9

6.9 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.3%

The irda_bind function in net/irda/af_irda.c in the Linux kernel before 2.6.36-rc3-next-20100901 does not properly handle failure of the irda_open_tsap function, which allows local users to cause a denial of service (NULL pointer dereference and panic) and possibly have unspecified other impact via multiple unsuccessful calls to bind on an AF_IRDA (aka PF_IRDA) socket.

References

6.9 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.3%