CVE-2010-2959
HIGH 7.2EPSS 3.7%
Integer overflow in net/can/bcm.c in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, and 2.6.35.x before 2.6.35.4 allows attackers to execute arbitrary code or cause a denial of service (system crash) via crafted CAN traffic.
- CVSS v2.0
- 7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 3.75% chance of exploitation in the next 30 days, 89th percentile
- Published
- 2010-09-08
- Updated
- 2024-08-07
Proof-of-concept exploits (1)
- sefcom/RetSpill71★ · 2025-11-13