The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privileges via crafted use of the sendmsg and recvmsg system calls.
Metrics
Affected Vendors & Products
References
History
Wed, 22 Oct 2025 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 07 Feb 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Tue, 13 Aug 2024 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: canonical
Published: 2010-12-06T20:00:00.000Z
Updated: 2025-10-22T00:05:50.418Z
Reserved: 2010-10-12T00:00:00.000Z
Link: CVE-2010-3904
Updated: 2024-08-07T03:26:12.057Z
Status : Deferred
Published: 2010-12-06T20:13:00.513
Modified: 2025-10-22T01:15:38.140
Link: CVE-2010-3904