CVE-2010-2942

CVSS 5.5 - MEDIUM
Description

The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initialize certain structure members when performing dump operations, which allows local users to obtain potentially sensitive information from kernel memory via vectors related to (1) the tcf_gact_dump function in net/sched/act_gact.c, (2) the tcf_mirred_dump function in net/sched/act_mirred.c, (3) the tcf_nat_dump function in net/sched/act_nat.c, (4) the tcf_simp_dump function in net/sched/act_simple.c, and (5) the tcf_skbedit_dump function in net/sched/act_skbedit.c.

Affected Products
38
Vendor Product Version
linux linux_kernel All versions
linux linux_kernel 2.6.36
linux linux_kernel 2.6.36
canonical ubuntu_linux 6.06
canonical ubuntu_linux 8.04
canonical ubuntu_linux 9.04
canonical ubuntu_linux 9.10
canonical ubuntu_linux 10.04
canonical ubuntu_linux 10.10
opensuse opensuse 11.1
opensuse opensuse 11.3
suse suse_linux_enterprise_desktop 10
suse suse_linux_enterprise_desktop 11
suse suse_linux_enterprise_desktop 11
suse suse_linux_enterprise_server 10
suse suse_linux_enterprise_server 11
suse suse_linux_enterprise_server 11
avaya aura_communication_manager 5.2
avaya aura_presence_services 6.0
avaya aura_presence_services 6.1
avaya aura_presence_services 6.1.1
avaya aura_session_manager 1.1
avaya aura_session_manager 5.2
avaya aura_session_manager 6.0
avaya aura_system_manager 5.2
avaya aura_system_manager 6.0
avaya aura_system_manager 6.1
avaya aura_system_manager 6.1.1
avaya aura_system_platform 1.1
avaya aura_system_platform 6.0
avaya aura_system_platform 6.0
avaya iq 5.0
avaya iq 5.1
avaya voice_portal 5.0
avaya voice_portal 5.1
avaya voice_portal 5.1
vmware esx 4.0
vmware esx 4.1
Weakness Types
CWE-401
CVE Information
CVE ID:
CVE-2010-2942
Published:
2010-09-21
Modified:
2026-04-29
CVSS Score:
5.5
Severity:
MEDIUM
Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Affected Vendors
avaya vmware linux canonical suse opensuse
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL