{"api_version":"1","generated_at":"2026-07-23T11:05:24+00:00","cve":"CVE-2010-4243","urls":{"html":"https://cve.report/CVE-2010-4243","api":"https://cve.report/api/cve/CVE-2010-4243.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2010-4243","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2010-4243"},"summary":{"title":"CVE-2010-4243","description":"fs/exec.c in the Linux kernel before 2.6.37 does not enable the OOM Killer to assess use of stack memory by arrays representing the (1) arguments and (2) environment, which allows local users to cause a denial of service (memory consumption) via a crafted exec system call, aka an \"OOM dodging issue,\" a related issue to CVE-2010-3858.","state":"PUBLISHED","assigner":"redhat","published_at":"2011-01-22 22:00:04","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-400","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.9","severity":"","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:C","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:C","baseScore":4.9,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/64700","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/64700","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["VDB Entry"],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.37","name":"http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.37","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"404: File not found","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://www.redhat.com/support/errata/RHSA-2011-0017.html","name":"http://www.redhat.com/support/errata/RHSA-2011-0017.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Support","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=625688","name":"https://bugzilla.redhat.com/show_bug.cgi?id=625688","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Issue Tracking","Third Party Advisory"],"title":"625688 – (CVE-2010-4243) CVE-2010-4243 kernel: mm: mem allocated invisible to oom_kill() when not attached to any threads","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/520102/100/0/threaded","name":"http://www.securityfocus.com/archive/1/520102/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/45004","name":"http://www.securityfocus.com/bid/45004","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Malformed Request","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://grsecurity.net/~spender/64bit_dos.c","name":"http://grsecurity.net/~spender/64bit_dos.c","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"404 Not Found","mime":"text/x-c","httpstatus":"404","archivestatus":"200"},{"url":"http://www.exploit-db.com/exploits/15619","name":"http://www.exploit-db.com/exploits/15619","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Third Party Advisory","VDB Entry"],"title":"Linux Kernel 'setup_arg_pages()' Denial of Service Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://openwall.com/lists/oss-security/2010/11/22/6","name":"http://openwall.com/lists/oss-security/2010/11/22/6","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"oss-security - CVE request: kernel: mm: mem allocated invisible to oom_kill() when\n not attached to any threads","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lkml.org/lkml/2010/8/29/206","name":"http://lkml.org/lkml/2010/8/29/206","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"LKML: KOSAKI Motohiro: Re: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/46397","name":"http://secunia.com/advisories/46397","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"About Secunia Research | Flexera","mime":"text/plain","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vmware.com/security/advisories/VMSA-2011-0012.html","name":"http://www.vmware.com/security/advisories/VMSA-2011-0012.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"VMSA-2011-0012.2","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lkml.org/lkml/2010/8/30/138","name":"http://lkml.org/lkml/2010/8/30/138","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"LKML: Roland McGrath: Re: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://openwall.com/lists/oss-security/2010/11/22/15","name":"http://openwall.com/lists/oss-security/2010/11/22/15","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"oss-security - Re: CVE request: kernel: mm: mem allocated invisible\n to oom_kill() when not attached to any threads","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lkml.org/lkml/2010/8/30/378","name":"http://lkml.org/lkml/2010/8/30/378","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"LKML: Solar Designer: Re: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://lkml.org/lkml/2010/8/27/429","name":"http://lkml.org/lkml/2010/8/27/429","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"LKML: Kees Cook: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/42884","name":"http://secunia.com/advisories/42884","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Red Hat update for kernel - Advisories - Community","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=3c77f845722158206a7209c45ccddc264d19319c","name":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=3c77f845722158206a7209c45ccddc264d19319c","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"kernel/git/torvalds/linux.git - Linux kernel source tree","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://linux.derkeiler.com/Mailing-Lists/Kernel/2010-11/msg13278.html","name":"http://linux.derkeiler.com/Mailing-Lists/Kernel/2010-11/msg13278.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=3c77f845722158206a7209c45ccddc264d19319c","name":"CONFIRM:http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=3c77f845722158206a7209c45ccddc264d19319c","refsource":"MITRE","tags":[],"title":"kernel/git/torvalds/linux.git - Linux kernel source tree","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2010-4243","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2010-4243","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2010","cve_id":"4243","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T03:34:37.819Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"[oss-security] 20101122 CVE request: kernel: mm: mem allocated invisible to oom_kill() when not attached to any threads","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://openwall.com/lists/oss-security/2010/11/22/6"},{"name":"20111013 VMSA-2011-0012 VMware ESXi and ESX updates to third party libraries and ESX Service Console","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/520102/100/0/threaded"},{"name":"RHSA-2011:0017","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"http://www.redhat.com/support/errata/RHSA-2011-0017.html"},{"name":"46397","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/46397"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.37"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=625688"},{"name":"linux-kernel-execve-dos(64700)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/64700"},{"name":"[linux-kernel] 20100830 Re: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lkml.org/lkml/2010/8/30/378"},{"name":"15619","tags":["exploit","x_refsource_EXPLOIT-DB","x_transferred"],"url":"http://www.exploit-db.com/exploits/15619"},{"name":"[linux-kernel] 20101130 [PATCH 1/2] exec: make argv/envp memory visible to oom-killer","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://linux.derkeiler.com/Mailing-Lists/Kernel/2010-11/msg13278.html"},{"name":"[oss-security] 20101122 Re: CVE request: kernel: mm: mem allocated invisible to oom_kill() when not attached to any threads","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://openwall.com/lists/oss-security/2010/11/22/15"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.vmware.com/security/advisories/VMSA-2011-0012.html"},{"name":"42884","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/42884"},{"name":"[linux-kernel] 20100827 [PATCH] exec argument expansion can inappropriately trigger OOM-killer","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lkml.org/lkml/2010/8/27/429"},{"name":"[linux-kernel] 20100830 Re: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lkml.org/lkml/2010/8/30/138"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=3c77f845722158206a7209c45ccddc264d19319c"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://grsecurity.net/~spender/64bit_dos.c"},{"name":"[linux-kernel] 20100830 Re: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lkml.org/lkml/2010/8/29/206"},{"name":"45004","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/45004"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2010-08-27T00:00:00.000Z","descriptions":[{"lang":"en","value":"fs/exec.c in the Linux kernel before 2.6.37 does not enable the OOM Killer to assess use of stack memory by arrays representing the (1) arguments and (2) environment, which allows local users to cause a denial of service (memory consumption) via a crafted exec system call, aka an \"OOM dodging issue,\" a related issue to CVE-2010-3858."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-10T18:57:01.000Z","orgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","shortName":"redhat"},"references":[{"name":"[oss-security] 20101122 CVE request: kernel: mm: mem allocated invisible to oom_kill() when not attached to any threads","tags":["mailing-list","x_refsource_MLIST"],"url":"http://openwall.com/lists/oss-security/2010/11/22/6"},{"name":"20111013 VMSA-2011-0012 VMware ESXi and ESX updates to third party libraries and ESX Service Console","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/520102/100/0/threaded"},{"name":"RHSA-2011:0017","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"http://www.redhat.com/support/errata/RHSA-2011-0017.html"},{"name":"46397","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/46397"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.37"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=625688"},{"name":"linux-kernel-execve-dos(64700)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/64700"},{"name":"[linux-kernel] 20100830 Re: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lkml.org/lkml/2010/8/30/378"},{"name":"15619","tags":["exploit","x_refsource_EXPLOIT-DB"],"url":"http://www.exploit-db.com/exploits/15619"},{"name":"[linux-kernel] 20101130 [PATCH 1/2] exec: make argv/envp memory visible to oom-killer","tags":["mailing-list","x_refsource_MLIST"],"url":"http://linux.derkeiler.com/Mailing-Lists/Kernel/2010-11/msg13278.html"},{"name":"[oss-security] 20101122 Re: CVE request: kernel: mm: mem allocated invisible to oom_kill() when not attached to any threads","tags":["mailing-list","x_refsource_MLIST"],"url":"http://openwall.com/lists/oss-security/2010/11/22/15"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.vmware.com/security/advisories/VMSA-2011-0012.html"},{"name":"42884","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/42884"},{"name":"[linux-kernel] 20100827 [PATCH] exec argument expansion can inappropriately trigger OOM-killer","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lkml.org/lkml/2010/8/27/429"},{"name":"[linux-kernel] 20100830 Re: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lkml.org/lkml/2010/8/30/138"},{"tags":["x_refsource_CONFIRM"],"url":"http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=3c77f845722158206a7209c45ccddc264d19319c"},{"tags":["x_refsource_MISC"],"url":"http://grsecurity.net/~spender/64bit_dos.c"},{"name":"[linux-kernel] 20100830 Re: [PATCH] exec argument expansion can inappropriately trigger OOM-killer","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lkml.org/lkml/2010/8/29/206"},{"name":"45004","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/45004"}]}},"cveMetadata":{"assignerOrgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","assignerShortName":"redhat","cveId":"CVE-2010-4243","datePublished":"2011-01-22T21:00:00.000Z","dateReserved":"2010-11-16T00:00:00.000Z","dateUpdated":"2024-08-07T03:34:37.819Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2011-01-22 22:00:04","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-400","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:C","baseScore":4.9,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"2.6.37","matchCriteriaId":"76630B45-B590-4651-972E-F938A83010C0"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2010","CveId":"4243","Ordinal":"1","Title":"CVE-2010-4243","CVE":"CVE-2010-4243","Year":"2010"},"notes":[{"CveYear":"2010","CveId":"4243","Ordinal":"1","NoteData":"fs/exec.c in the Linux kernel before 2.6.37 does not enable the OOM Killer to assess use of stack memory by arrays representing the (1) arguments and (2) environment, which allows local users to cause a denial of service (memory consumption) via a crafted exec system call, aka an \"OOM dodging issue,\" a related issue to CVE-2010-3858.","Type":"Description","Title":"CVE-2010-4243"},{"CveYear":"2010","CveId":"4243","Ordinal":"2","NoteData":"2011-01-22","Type":"Other","Title":"Published"},{"CveYear":"2010","CveId":"4243","Ordinal":"3","NoteData":"2018-10-10","Type":"Other","Title":"Modified"}]}}}