CVE-2012-3510 is a use-after-free vulnerability in the xacct_add_tsk function of the Linux kernel (before version 2.6.19). This flaw allows local users to potentially access sensitive kernel memory or trigger a denial of service through a taskstats TASKSTATS_CMD_ATTR_PID command. With a CVSS score of 5.6, it has a low attack complexity and requires local access, with potential impacts being partial confidentiality and complete availability compromise. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.6.18.8CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
2.6.10CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:2.6.10:*:*:*:*:*:*:* | ||
2.6.10CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:2.6.10:rc1:*:*:*:*:*:* | ||
2.6.10CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:2.6.10:rc2:*:*:*:*:*:* | ||
2.6.10CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:2.6.10:rc3:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:P/I:N/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.