Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1020 CNY

100%

CVE-2010-4347

EPSS 8.11% · P92

Public Exploits 1

Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2010-4347

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The ACPI subsystem in the Linux kernel before 2.6.36.2 uses 0222 permissions for the debugfs custom_method file, which allows local users to gain privileges by placing a custom ACPI method in the ACPI interpreter tables, related to the acpi_debugfs_init function in drivers/acpi/debugfs.c.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Linux Kernel 'drivers/acpi/debugfs.c'本地权限提升漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。NFSv4 implementation是其中的一个分布式文件系统协议。 Linux kernel 2.6.36.2之前版本中的ACPI子系统为debugfs custom_method文件使用了0222许可。本地用户可以通过在ACPI翻译表中放置本地ACPI方法获取特权。该漏洞与在drivers/acpi/debugfs.c文件中的acpi_debugfs_init函数有关。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2010-4347

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2010-4347

登录查看更多情报信息。

Same Patch Batch · n/a · 2010-12-22 · 45 CVEs total

CVE-2010-4584Opera X.509证书加密问题漏洞
CVE-2010-4587Opera设计错误漏洞
CVE-2010-4586Opera默认配置错误漏洞
CVE-2010-0114Symantec Endpoint Protection fw_charts.php文件任意代码执行漏洞
CVE-2010-4574Google Chrome Pickle::Pickle函数拒绝服务漏洞
CVE-2010-4575Google Chrome ThemeInstalledInfoBarDelegate::Observe函数拒绝服务漏洞
CVE-2010-4576Google Chrome dispatcher.cc文件空指针引用漏洞
CVE-2010-4577Google Chrome CSS越界读取漏洞
CVE-2010-4578Google Chrome拒绝服务攻击漏洞
CVE-2010-4116HP StorageWorks Storage Mirroring远程代码执行漏洞
CVE-2010-4585Opera自动升级功能拒绝服务漏洞
CVE-2010-4583Opera Turbo设计错误漏洞
CVE-2010-4582Opera权限许可和访问控制漏洞
CVE-2010-4581Opera opera_browser未明漏洞
CVE-2010-4580Opera信息泄漏漏洞
CVE-2010-4579Opera设计错误漏洞
CVE-2010-4333Pangramsoft Pointter PHP Content Management System授权问题漏洞
CVE-2010-4332Pangramsoft Pointter PHP Content Management System管理特权绕过漏洞
CVE-2010-4275Dmasoftlab Radius Manager New User Group Script任意代码执行漏洞
CVE-2010-2590SAP Crystal Reports Print ActiveX Control缓冲区溢出漏洞

Showing top 20 of 45 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2010-4347

No comments yet


Leave a comment