Vulnerability Intelligence

🛡 CVE-2010-3904

Linux Kernel Improper Input Validation Vulnerability
Linux Kernel CWE-20

Ransomware use

CISA KEV

EPSS

12.2%
Elevated · 96th pct

Added to KEV

2023-05-12
CISA

Remediate by

2023-06-02
⚠ OVERDUE

CWE

CWE-20
weakness

📈 EPSS exploit probability

12.2%
FIRST EPSS — 30-day probability of exploitation in the wild · band Elevated · higher than 96% of all scored CVEs

⚠ KEV remediation overdue

CISA required federal remediation by 2023-06-02. This exploited vulnerability is past its Binding Operational Directive 22-01 due date — prioritize patch/mitigation and hunt for exploitation.

📄 Description

Linux Kernel contains an improper input validation vulnerability in the Reliable Datagram Sockets (RDS) protocol implementation that allows local users to gain privileges via crafted use of the sendmsg and recvmsg system calls.

🛡 Add to case

Attach CVE-2010-3904 (Vulnerability / CVE) and pull all linked entities:
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php