CVE-2010-3904
The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privileges via crafted use of the sendmsg and recvmsg system calls.
Actively exploited
- In the CISA exploited-vulnerabilities catalogue since May 12, 2023
- US federal agencies must remediate it by Jun 2, 2023 (BOD 22-01)
- First attack observed 4539 days after disclosure
The impacted product is end-of-life and should be disconnected if still in use.
Source: CISA KEV · Aug 20, 2026 May 12, 2023
CVSS score7.8 / 10
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HWeakness type (CWE)CWE-1284
Vendorsredhat, suse, linux, opensuse, canonical, vmware
Affected products
| Vendors | Prodotto | Versioni |
|---|---|---|
| linux | linux kernel | < 2.6.36 |
| opensuse | opensuse | 11.2 |
| suse | linux enterprise desktop | 11 |
| suse | linux enterprise real time extension | 11 |
| suse | linux enterprise server | 11 |
| canonical | ubuntu linux | 6.06 |
| redhat | enterprise linux | 5.0 |
| vmware | esxi | 3.5 |
Related articles
This product uses the NVD API but is not endorsed or certified by the NVD.
