CVE Vulnerabilities

CVE-2003-0476

Published: Aug 07, 2003 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The execve system call in Linux 2.4.x records the file descriptor of the executable process in the file table of the calling process, which allows local users to gain read access to restricted file descriptors.

Affected Software

NameVendorStart VersionEnd Version
Linux_kernelLinux2.4.0 (including)2.4.0 (including)
Red Hat Desktop version 3RedHat*
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Enterprise Linux ES version 2.1RedHat*
Red Hat Enterprise Linux ES version 3RedHat*
Red Hat Enterprise Linux WS version 2.1RedHat*
Red Hat Linux 7.1RedHat*
Red Hat Linux 7.2RedHat*
Red Hat Linux 7.3RedHat*
Red Hat Linux 8.0RedHat*
Red Hat Linux 9RedHat*
Red Hat Linux Advanced Workstation 2.1RedHat*
Kernel-source-2.4.27Ubuntudapper*
Kernel-source-2.4.27Ubuntuedgy*

References