4
CVSSv2

CVE-2010-4242

Published: 11/01/2011 Updated: 10/10/2018
CVSS v2 Base Score: 4 | Impact Score: 6.9 | Exploitability Score: 1.9
VMScore: 356
Vector: AV:L/AC:H/Au:N/C:N/I:N/A:C

Vulnerability Summary

The hci_uart_tty_open function in the HCI UART driver (drivers/bluetooth/hci_ldisc.c) in the Linux kernel 2.6.36, and possibly other versions, does not verify whether the tty has a write operation, which allows local users to cause a denial of service (NULL pointer dereference) via vectors related to the Bluetooth driver.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.6.36

Vendor Advisories

Multiple kernel flaws have been fixed ...
A local attacker could exploit this to run programs with admininstrator privileges ...
An attacker could send crafted input to the kernel and cause it to crash ...
Multiple kernel flaws have been fixed ...
Multiple security flaws in Linux kernel ...

Exploits

Ubuntu Security Notice 1202-1 - Dan Rosenberg discovered that several network ioctls did not clear kernel memory correctly A local user could exploit this to read kernel stack memory, leading to a loss of privacy Brad Spengler discovered that stack memory for new a process was not correctly calculated A local attacker could exploit this to crash ...