CVE-2010-2959

EXPLOITED

Linux kernel <2.6.27.53-2.6.35.4 - RCE/DoS

Title source: llm

Description

Integer overflow in net/can/bcm.c in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, and 2.6.35.x before 2.6.35.4 allows attackers to execute arbitrary code or cause a denial of service (system crash) via crafted CAN traffic.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Jon Oberheide · clocallinux
https://www.exploit-db.com/exploits/14814

References (18)

Scores

EPSS 0.0037
EPSS Percentile 58.6%

Details

VulnCheck KEV 2026-02-09
CWE
CWE-190
Status published
Products (8)
debian/debian_linux 5.0
fedoraproject/fedora 12
linux/linux_kernel < 2.6.27.53
opensuse/opensuse 11.3
suse/linux_enterprise_desktop 11 sp1
suse/linux_enterprise_high_availability_extension 11 sp1
suse/linux_enterprise_real_time 11 sp1
suse/linux_enterprise_server 11 sp1
Published Sep 08, 2010
Tracked Since Feb 18, 2026