Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2010-1636


The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the btrfs functionality in the Linux kernel 2.6.29 through 2.6.32, and possibly other versions, does not ensure that a cloned file descriptor has been opened for reading, which allows local users to read sensitive information from a write-only file descriptor.


Published

2010-06-08T00:30:01.397

Last Modified

2025-04-11T00:51:21.963

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 2.1 (LOW)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:P/I:N/A:N

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

3.9

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-200

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System linux linux_kernel 2.6.29 Yes
Operating System linux linux_kernel 2.6.29.1 Yes
Operating System linux linux_kernel 2.6.29.2 Yes
Operating System linux linux_kernel 2.6.29.3 Yes
Operating System linux linux_kernel 2.6.29.4 Yes
Operating System linux linux_kernel 2.6.29.5 Yes
Operating System linux linux_kernel 2.6.29.6 Yes
Operating System linux linux_kernel 2.6.30 Yes
Operating System linux linux_kernel 2.6.30.1 Yes
Operating System linux linux_kernel 2.6.30.2 Yes
Operating System linux linux_kernel 2.6.30.3 Yes
Operating System linux linux_kernel 2.6.30.4 Yes
Operating System linux linux_kernel 2.6.30.5 Yes
Operating System linux linux_kernel 2.6.30.6 Yes
Operating System linux linux_kernel 2.6.30.7 Yes
Operating System linux linux_kernel 2.6.30.8 Yes
Operating System linux linux_kernel 2.6.30.9 Yes
Operating System linux linux_kernel 2.6.30.10 Yes
Operating System linux linux_kernel 2.6.31 Yes
Operating System linux linux_kernel 2.6.31.1 Yes
Operating System linux linux_kernel 2.6.31.2 Yes
Operating System linux linux_kernel 2.6.31.3 Yes
Operating System linux linux_kernel 2.6.31.4 Yes
Operating System linux linux_kernel 2.6.31.5 Yes
Operating System linux linux_kernel 2.6.31.6 Yes
Operating System linux linux_kernel 2.6.31.7 Yes
Operating System linux linux_kernel 2.6.31.8 Yes
Operating System linux linux_kernel 2.6.31.9 Yes
Operating System linux linux_kernel 2.6.31.10 Yes
Operating System linux linux_kernel 2.6.31.11 Yes
Operating System linux linux_kernel 2.6.31.12 Yes
Operating System linux linux_kernel 2.6.31.13 Yes
Operating System linux linux_kernel 2.6.32 Yes

References