← Vulnerability feed

Vulnerability record · CVE-2010-0309 · published 12 February 2010

CVE-2010-0309: Linux kernel vulnerability

Linux · Kernel

The pit_ioport_read function in the Programmable Interval Timer (PIT) emulation in i8254.c in KVM 83 does not properly use the pit_state data structure, which allows guest OS users to cause a denial of service (host OS crash or hang) by attempting to read the /dev/port file.

6.8 CVSS 2.0 Medium EPSS 2.8% · top 14.3% CWE-16 · CWE-16
6.8CVSS 2.0 base score
2.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
26References
16 Jun 2026Last modified by NVD

Description

The pit_ioport_read function in the Programmable Interval Timer (PIT) emulation in i8254.c in KVM 83 does not properly use the pit_state data structure, which allows guest OS users to cause a denial of service (host OS crash or hang) by attempting to read the /dev/port file.

AV:N/AC:L/Au:S/C:N/I:N/A:C

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2010-0309 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2009-2844Linux kernel vulnerabilitycfg80211 in net/wireless/scan.c in the Linux kernel 2.6.30-rc1 and other versions before 2.6.31-rc6 allows remote attackers to cause a denial of serv…EPSS 3.4%7.8CVE-2009-1389Linux kernel memory buffer overflow vulnerabilityBuffer overflow in the RTL8169 NIC driver (drivers/net/r8169.c) in the Linux kernel before 2.6.30 allows remote attackers to cause a denial of servic…EPSS 5.5%7.8CVE-2009-1385Intel e1000 vulnerabilityInteger underflow in the e1000_clean_rx_irq function in drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel before 2.6.30-rc8, the…EPSS 34%7.5CVE-2014-2649Hp operations manager vulnerabilityUnspecified vulnerability in HP Operations Manager 9.20 on UNIX allows remote attackers to execute arbitrary code via unknown vectors.EPSS 6.4%7.2CVE-2009-2767Linux kernel memory buffer overflow vulnerabilityThe init_posix_timers function in kernel/posix-timers.c in the Linux kernel before 2.6.31-rc6 allows local users to cause a denial of service (OOPS) …EPSS 0.74%6.9CVE-2009-2406Linux kernel memory buffer overflow vulnerabilityStack-based buffer overflow in the parse_tag_11_packet function in fs/ecryptfs/keystore.c in the eCryptfs subsystem in the Linux kernel before 2.6.30…EPSS 0.50%4.9CVE-2009-2847Linux kernel vulnerabilityThe do_sigaltstack function in kernel/signal.c in Linux kernel 2.4 through 2.4.37 and 2.6 before 2.6.31-rc5, when running on 64-bit systems, does not…EPSS 0.94%4.6CVE-2009-3624Linux kernel vulnerabilityThe get_instantiation_keyring function in security/keys/keyctl.c in the KEYS subsystem in the Linux kernel before 2.6.32-rc5 does not properly mainta…EPSS 0.37%

Source: NIST National Vulnerability Database (record CVE-2010-0309), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.