VYPR
Unrated severityNVD Advisory· Published Jan 3, 2011· Updated Apr 29, 2026

CVE-2010-4668

CVE-2010-4668

Description

The blk_rq_map_user_iov function in block/blk-map.c in the Linux kernel before 2.6.37-rc7 allows local users to cause a denial of service (panic) via a zero-length I/O request in a device ioctl to a SCSI device, related to an unaligned map. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-4163.

Affected products

8
  • Linux/Kernel8 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 7 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: <2.6.37
    • cpe:2.3:o:linux:linux_kernel:2.6.37:-:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.37:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.37:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.37:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.37:rc4:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.37:rc5:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.6.37:rc6:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

11

News mentions

0

No linked articles in our index yet.