4.9
CVSSv2

CVE-2010-0727

Published: 16/03/2010 Updated: 07/08/2020
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
VMScore: 436
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The gfs2_lock function in the Linux kernel prior to 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX locks on files that are setgid without group-execute permission, which allows local users to cause a denial of service (BUG and system crash) by locking a file on a (1) GFS or (2) GFS2 filesystem, and then changing this file's permissions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

debian debian linux 5.0

redhat enterprise linux 5.0

redhat enterprise linux 6.0

Vendor Advisories

Several vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or privilege escalation The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-4537 Fabian Yamaguchi reported a missing check for Ethernet frames larger than the MTU in the r8169 driver This may allo ...
Synopsis Moderate: gfs-kmod security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic Updated gfs-kmod packages that fix one security issue, numerous bugs, andadd one enhancement are now available for Red Hat Enterprise Linux 55,kernel release 2618-194el5The Red Hat Secur ...
Synopsis Moderate: GFS security and bug fix update Type/Severity Security Advisory: Moderate Topic Updated GFS packages that fix one security issue are now available for RedHat Enterprise Linux 39, kernel release 2421-63ELThe Red Hat Security Response Team has rated this update as having moderatesecuri ...
Synopsis Moderate: GFS-kernel security and bug fix update Type/Severity Security Advisory: Moderate Topic Updated GFS-kernel packages that fix one security issue are now availablefor Red Hat Enterprise Linux 48, kernel release 269-89020ELThe Red Hat Security Response Team has rated this update as hav ...
Synopsis Important: Red Hat Enterprise Linux 55 kernel security and bug fix update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix three security issues, address severalhundred bugs, and add numerous enhancements are now available as part ofthe ongoing support and maintena ...
Synopsis Important: kernel security and bug fix update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix multiple security issues and several bugsare now available for Red Hat Enterprise Linux 54 Extended Update SupportThe Red Hat Security Response Team has rated this updat ...
KVM regressed under some conditions in the Linux kernel ...