uml_net in the kernel-utils package for Red Hat Linux 8.0 has incorrect setuid root privileges, which allows local users to modify network interfaces, e.g. by modifying ARP entries or placing interfaces into promiscuous mode.
References
Link | Resource |
---|---|
http://www.ciac.org/ciac/bulletins/n-044.shtml | |
http://www.iss.net/security_center/static/11276.php | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/134025 | US Government Resource |
http://www.redhat.com/support/errata/RHSA-2003-056.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/6801 | |
http://www.ciac.org/ciac/bulletins/n-044.shtml | |
http://www.iss.net/security_center/static/11276.php | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/134025 | US Government Resource |
http://www.redhat.com/support/errata/RHSA-2003-056.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/6801 |
Configurations
History
20 Nov 2024, 23:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.ciac.org/ciac/bulletins/n-044.shtml - | |
References | () http://www.iss.net/security_center/static/11276.php - Patch, Vendor Advisory | |
References | () http://www.kb.cert.org/vuls/id/134025 - US Government Resource | |
References | () http://www.redhat.com/support/errata/RHSA-2003-056.html - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/6801 - |
Information
Published : 2003-02-19 05:00
Updated : 2024-11-20 23:43
NVD link : CVE-2003-0019
Mitre link : CVE-2003-0019
CVE.ORG link : CVE-2003-0019
JSON object : View
Products Affected
redhat
- linux
CWE