Exploitation Summary
CVE-2010-2959 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including Jon Oberheide.
AI-analyzed exploit summary This exploit leverages an integer overflow in the Linux Kernel CAN BCM module (CVE-2010-2959) to achieve local privilege escalation by manipulating SLUB allocations and overwriting a shmid_kernel struct.
Description
Integer overflow in net/can/bcm.c in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, and 2.6.35.x before 2.6.35.4 allows attackers to execute arbitrary code or cause a denial of service (system crash) via crafted CAN traffic.
Exploits (1)
This exploit leverages an integer overflow in the Linux Kernel CAN BCM module (CVE-2010-2959) to achieve local privilege escalation by manipulating SLUB allocations and overwriting a shmid_kernel struct.