← Back

CVE-2010-2240

nvd nist
Published: Sep 3, 2010Modified: Apr 29, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

The do_anonymous_page function in mm/memory.c in the Linux kernel before 2.6.27.52, 2.6.32.x before 2.6.32.19, 2.6.34.x before 2.6.34.4, and 2.6.35.x before 2.6.35.2 does not properly separate the stack and the heap, which allows context-dependent attackers to execute arbitrary code by writing to the bottom page of a shared memory segment, as demonstrated by a memory-exhaustion attack against the X.Org X server.

Affected (24)

Products: Linux: Linux Kernel
1 product
Linux Kernel
Configuration A
24 vulnerable
Vulnerable SoftwareAffected Versions
Linux
Up to 2.6.27.51
Version 2.6.32.10
Version 2.6.32.11
Version 2.6.32.12
Version 2.6.32.13
Version 2.6.32.14
Version 2.6.32.15
Version 2.6.32.16
Version 2.6.32.17
Version 2.6.32.18
Version 2.6.32.1
Version 2.6.32.2
Version 2.6.32.3
Version 2.6.32.4
Version 2.6.32.5
Version 2.6.32.6
Version 2.6.32.7
Version 2.6.32.8
Version 2.6.32.9
Version 2.6.32
Version 2.6.34.1
Version 2.6.34.2
Version 2.6.34.3
Version 2.6.35.1

References (42)

Source: secalert@redhat.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.