Lucene search

K
prionPRIOn knowledge basePRION:CVE-2010-4160
HistoryJan 07, 2011 - 12:00 p.m.

Integer overflow

2011-01-0712:00:00
PRIOn knowledge base
www.prio-n.com
6

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.1%

Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the Linux kernel before 2.6.36.2 allow local users to cause a denial of service (heap memory corruption and panic) or possibly gain privileges via a crafted sendto call.

References

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.1%