CVE Vulnerabilities

CVE-2003-0476

Published: Aug 07, 2003 | Modified: May 03, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The execve system call in Linux 2.4.x records the file descriptor of the executable process in the file table of the calling process, which allows local users to gain read access to restricted file descriptors.

Affected Software

Name Vendor Start Version End Version
Linux_kernel Linux 2.4.0 2.4.0
Red Hat Enterprise Linux 2.1 RedHat kernel *
Kernel-source-2.4.27 Ubuntu dapper *
Kernel-source-2.4.27 Ubuntu edgy *

References