Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2010-3081

39
FAUCET Score

CVE-2010-3081 is a local privilege escalation vulnerability affecting the Linux kernel on 64-bit platforms, specifically impacting Red Hat, SUSE, and VMware products. The flaw stems from improper memory allocation in the compat_alloc_user_space functions, allowing a local user to gain elevated privileges by manipulating a length value. This vulnerability carries a high CVSS score of 7.8, indicating a low attack complexity and the potential for complete compromise of confidentiality, integrity, and availability. It was actively exploited in the wild in September 2010, with public exploit code available on ExploitDB, though it has since seen minimal community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
<= 2.6.35.4CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
2.6.36CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.36:-:*:*:*:*:*:*
2.6.36CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.36:rc1:*:*:*:*:*:*
2.6.36CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.36:rc2:*:*:*:*:*:*
2.6.36CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.36:rc3:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
3.53%
Probability of exploitation in next 30 days
EPSS Percentile
88.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
ExploitDB: EDB-15024 · Sep 16, 2010
This CVE's current EPSS score of 0.0353 is in the 98th percentile among its peer group of 16,974 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (27)

boschpatch availablevia llm_extracted
Fixed in: 2.6.32-19
discoursepatch availablevia llm_extracted
Fixed in: 2.6.32-19
discoursepatch availablevia llm_extracted
Fixed in: 2.6.18-6
discoursepatch availablevia llm_extracted
Fixed in: 2.6.24-25
nessuspatch availablevia llm_extracted
Fixed in: 2.6.32-19
openofficepatch availablevia llm_extracted
Fixed in: 2.6.18-6
openofficepatch availablevia llm_extracted
Fixed in: 2.6.32-19
openofficepatch availablevia llm_extracted
Fixed in: 2.6.24-25
openpgpjspatch availablevia llm_extracted
Fixed in: 2.6.18-6
openpgpjspatch availablevia llm_extracted
Fixed in: 2.6.32-19
openpgpjspatch availablevia llm_extracted
Fixed in: 2.6.24-25
openslidespatch availablevia llm_extracted
Fixed in: 2.6.32-19, 2.6.24-25, 2.6.18-6
phoenix_contactpatch availablevia llm_extracted
Fixed in: 2.6.24-25
phoenix_contactpatch availablevia llm_extracted
Fixed in: 2.6.18-6
phoenix_contactpatch availablevia llm_extracted
Fixed in: 2.6.32-19
pionpatch availablevia llm_extracted
Fixed in: 2.6.32-19
pionpatch availablevia llm_extracted
Fixed in: 2.6.24-25
pionpatch availablevia llm_extracted
Fixed in: 2.6.18-6
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5.4.Z - Server OnlyFixed in: kernel-0:2.6.18-164.25.2.el5
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5.3.Z - Server OnlyFixed in: kernel-0:2.6.18-128.23.2.el5
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: kernel-0:2.6.32-71.7.1.el6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: kernel-0:2.6.18-194.11.4.el5
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4.7 Z StreamFixed in: kernel-0:2.6.9-78.0.33.EL
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4Fixed in: kernel-0:2.6.9-89.29.1.EL
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 3 Extended Lifecycle SupportFixed in: kernel-0:2.4.21-66.EL
View patch
redhatpatch availablevia redhat_api
Product: MRG for RHEL-5Fixed in: kernel-rt-0:2.6.24.7-169.el5rt
View patch
redhatpatch availablevia nvd_reference
View patch

Vendor Advisories (19)

redhatCVE-2010-3081Important

kernel: 64-bit Compatibility Mode Stack Pointer Underflow

Sep 15, 2010
boschllm-bosch-f68364961f33c080

Kernel vulnerability fix for CVE-2010-3081

boschllm-bosch-7387652308352310

Kernel vulnerability fix for CVE-2010-3081 in pve-kernel-2.6.32

discoursellm-discourse-6ecd8d14f388b20f

Kernel vulnerability fix for CVE-2010-3081

openpgpjsllm-openpgpjs-d04440fd6e97339b

Kernel vulnerability fix for CVE-2010-3081

openofficellm-openoffice-d9a8ea8c11798aa8

Kernel fix for CVE-2010-3081 in pve-kernel-2.6.32

openofficellm-openoffice-8bc6a47cbc4b52d5

Kernel update to fix CVE-2010-3081 in pve-kernel-2.6.24

openofficellm-openoffice-61003ead5d4080da

Kernel fix for CVE-2010-3081 in pve-kernel-2.6.18

nessusllm-nessus-953cf17d32945962HIGH

Linux Kernel Local Privilege Escalation Vulnerability (CVE-2010-3081) in pve-kernel-2.6.32

pionllm-pion-67e4994a1ac3e440

Fix for CVE-2010-3081 in pve-kernel-2.6.32

pionllm-pion-bd4074943044e9f2

Fix for CVE-2010-3081 in pve-kernel-2.6.24

pionllm-pion-9166dd52ce6fe184

Fix for CVE-2010-3081 in pve-kernel-2.6.18

phoenix_contactllm-phoenix_contact-b7e515b2df2b6fb8

Fix for CVE-2010-3081 in pve-kernel-2.6.32

phoenix_contactllm-phoenix_contact-ec0ec1b380651899

Fix for CVE-2010-3081 in pve-kernel-2.6.24

phoenix_contactllm-phoenix_contact-37b93fb1eed3edd8

Fix for CVE-2010-3081 in pve-kernel-2.6.18

openslidesllm-openslides-97728ec798a4a53e

Kernel vulnerability fix (CVE-2010-3081)

openpgpjsllm-openpgpjs-300afcad0c12579b

Fix for CVE-2010-3081 in pve-kernel-2.6.32

openpgpjsllm-openpgpjs-b3a2a1c0fbe4fa78

Fix for CVE-2010-3081 in pve-kernel-2.6.24

openpgpjsllm-openpgpjs-fb217363321ce162

Fix for CVE-2010-3081 in pve-kernel-2.6.18

References

archives.neohapsis.com / archives/fulldisclosure/2010-09/0273.html
Broken Link
archives.neohapsis.com / archives/fulldisclosure/2010-09/0278.html
Broken Link
blog.ksplice.com / 2010/09/cve-2010-3081
Broken Link
git.kernel.org
isc.sans.edu / diary.html
PatchThird Party Advisory
lists.opensuse.org / opensuse-security-announce/2010-09/msg00006.html
Mailing ListThird Party Advisory
lists.opensuse.org / opensuse-security-announce/2010-10/msg00003.html
Mailing ListThird Party Advisory
lists.opensuse.org / opensuse-security-announce/2011-02/msg00000.html
Mailing ListThird Party Advisory
marc.info
Mailing ListPatchThird Party Advisory
access.redhat.com / kb/docs/DOC-40265
ExploitPatchThird Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue TrackingPatchThird Party Advisory
secunia.com / advisories/42384
Broken Link
secunia.com / advisories/43315
Broken Link
sota.gen.nz / compat1
Broken Link
kernel.org / pub/linux/kernel/v2.6/snapshots/patch-2.6.36-rc4-git2.log
Broken Link
mandriva.com / security/advisories
Broken Link
mandriva.com / security/advisories
Broken Link
mandriva.com / security/advisories
Broken Link
redhat.com / support/errata/RHSA-2010-0758.html
Broken Link
redhat.com / support/errata/RHSA-2010-0842.html
Broken Link
redhat.com / support/errata/RHSA-2010-0882.html
Broken Link
securityfocus.com / archive/1/514938/30/30/threaded
Third Party AdvisoryVDB Entry
securityfocus.com / archive/1/516397/100/0/threaded
Third Party AdvisoryVDB Entry
vmware.com / security/advisories/VMSA-2010-0017.html
Third Party Advisory
vmware.com / security/advisories/VMSA-2011-0003.html
Third Party Advisory
vupen.com / english/advisories/2010/3083
Broken Link
vupen.com / english/advisories/2010/3117
Broken Link
vupen.com / english/advisories/2011/0298
Broken Link