The irda_bind function in net/irda/af_irda.c in the Linux kernel before 2.6.36-rc3-next-20100901 does not properly handle failure of the irda_open_tsap function, which allows local users to cause a denial of service (NULL pointer dereference and panic) and possibly have unspecified other impact via multiple unsuccessful calls to bind on an AF_IRDA (aka PF_IRDA) socket.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2010-09-03T19:00:00

Updated: 2024-08-07T02:55:45.504Z

Reserved: 2010-08-04T00:00:00

Link: CVE-2010-2954

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-09-03T20:00:04.060

Modified: 2024-11-21T01:17:43.617

Link: CVE-2010-2954

cve-icon Redhat

Severity : Moderate

Publid Date: 2010-08-31T00:00:00Z

Links: CVE-2010-2954 - Bugzilla