CVE-2010-3904

Linux Kernel: Improper Input Validation

As of , CVE-2010-3904 in Linux Kernel is on CISA's list of exploited vulnerabilities: CISA listed it on . Our patch-first group: Patch this week.

Exploited
Yes: CISA listed it on 12 May 2023
US federal deadline
2 June 202321 days after CISA listed it. US federal civilian agencies must fix it by then.
Used in ransomware campaigns
Not known to CISA
EPSS score
0.16Higher than 96% of the CVEs EPSS scores. EPSS estimates the chance of exploitation activity in the next 30 days.
EPSS when listed
0.00 on 12 May 2023EPSS on the day CISA listed it.
Public exploit
1 Metasploit module and 2 Exploit-DB entries (2 verified)
Fix
Vendor advice: lkml.iu.eduLinks below, from CISA's entry.

What CISA says to do

The impacted product is end-of-life and should be disconnected if still in use.

CISA's required action

What the flaw is

Linux Kernel contains an improper input validation vulnerability in the Reliable Datagram Sockets (RDS) protocol implementation that allows local users to gain privileges via crafted use of the sendmsg and recvmsg system calls.

CISA's description

The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privileges via crafted use of the sendmsg and recvmsg system calls.

The CVE record's description, from canonical

CVE published
6 December 2010
Assigned by
canonical
CVSS
7.8 High (CVSS 3.1, from CISA-ADP)
CWE-20
Improper Input Validation
CISA SSVC, exploitation
active
CISA SSVC, automatable
no
CISA SSVC, technical impact
total

Timeline

  1. Exploit-DB published an exploit (EDB-ID 15285).
  2. The CVE record was published.
  3. Exploit-DB published an exploit (EDB-ID 44677).
  4. CISA added it to its list of exploited vulnerabilities.
  5. The US federal deadline to fix it.

Public exploits

Facts from Metasploit's module list and Exploit-DB's index; we never copy exploit code.

Kernel: other exploited entries

VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2025-39682Improper Check for Unusual or Exceptional ConditionsLinux KernelPatch nowForensic triage required by CISA0.03
CVE-2025-39964Race ConditionLinux KernelPatch nowForensic triage required by CISA0.01
CVE-2026-53266Out-of-Bounds WriteLinux KernelPatch nowForensic triage required by CISA0.01
CVE-2026-53362UnspecifiedLinux KernelPatch nowForensic triage required by CISA0.01
CVE-2021-22555Heap Out-of-Bounds WriteLinux KernelPatch this weekMetasploit module; EPSS 0.79; verified Exploit-DB entry0.79
CVE-2013-6282Improper Input ValidationLinux KernelPatch this weekMetasploit module; verified Exploit-DB entry0.40
CVE-2019-13272Improper Privilege ManagementLinux KernelPatch this weekMetasploit module; EPSS 0.52; verified Exploit-DB entry0.52
CVE-2022-0847Privilege EscalationLinux KernelPatch this weekMetasploit module; EPSS 0.930.93
CVE-2021-3493Privilege EscalationLinux KernelPatch this weekMetasploit module0.49
CVE-2014-3153Privilege EscalationLinux KernelPatch this weekMetasploit module0.37

All 31 entries for Kernel

Read further