VYPR
High severity8.1NVD Advisory· Published Sep 30, 2010· Updated Apr 29, 2026

CVE-2010-2943

CVE-2010-2943

Description

The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote authenticated users to read unlinked files, or read or overwrite disk blocks that are currently assigned to an active file but were previously assigned to an unlinked file, by accessing a stale NFS filehandle.

Affected products

26
  • cpe:2.3:a:avaya:aura_communication_manager:5.2:*:*:*:*:*:*:*
  • cpe:2.3:a:avaya:aura_presence_services:6.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:avaya:aura_presence_services:6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_presence_services:6.1:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_presence_services:6.1.1:*:*:*:*:*:*:*
  • cpe:2.3:a:avaya:aura_session_manager:1.1:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:avaya:aura_session_manager:1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_session_manager:5.2:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_session_manager:6.0:*:*:*:*:*:*:*
  • cpe:2.3:a:avaya:aura_system_manager:5.2:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:avaya:aura_system_manager:5.2:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_system_manager:6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_system_manager:6.1:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_system_manager:6.1.1:*:*:*:*:*:*:*
  • cpe:2.3:a:avaya:aura_system_platform:1.1:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:avaya:aura_system_platform:1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_system_platform:6.0:-:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_system_platform:6.0:sp1:*:*:*:*:*:*
  • cpe:2.3:a:avaya:aura_voice_portal:5.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:avaya:aura_voice_portal:5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_voice_portal:5.1:-:*:*:*:*:*:*
    • cpe:2.3:a:avaya:aura_voice_portal:5.1:sp1:*:*:*:*:*:*
  • Avaya/Iq2 versions
    cpe:2.3:a:avaya:iq:5.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:avaya:iq:5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:avaya:iq:5.1:*:*:*:*:*:*:*
  • cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:-:*:*:*+ 3 more
    • cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:-:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:10.10:*:*:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:-:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:9.10:*:*:*:*:*:*:*
  • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
    Range: <2.6.35
  • VMware/Esx2 versions
    cpe:2.3:o:vmware:esx:4.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:vmware:esx:4.0:*:*:*:*:*:*:*
    • cpe:2.3:o:vmware:esx:4.1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

22

News mentions

0

No linked articles in our index yet.