CVE Database
/

CVE-2010-2943

Back to search

CVE-2010-2943

Published: Sep 30, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote authenticated users to read unlinked files, or read or overwrite disk blocks that are currently assigned to an active file but were previously assigned to an unlinked file, by accessing a stale NFS filehandle.

VendorProductVersions

n/a

n/a

affected
n/a

References

42527
vdb-entry
x_refsource_BID
RHSA-2010:0723
vendor-advisory
x_refsource_REDHAT
46397
third-party-advisory
x_refsource_SECUNIA
USN-1041-1
vendor-advisory
x_refsource_UBUNTU
ADV-2011-0280
vdb-entry
x_refsource_VUPEN
42758
third-party-advisory
x_refsource_SECUNIA
USN-1057-1
vendor-advisory
x_refsource_UBUNTU
ADV-2011-0070
vdb-entry
x_refsource_VUPEN
43161
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now