PT-2003-1097 · Linux+1 · Linux+1
Publicado
2003-05-22
·
Atualizado
2017-10-11
·
CVE-2003-0699
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux versions prior to 2.4.21
Red Hat Linux kernel versions 2.4.20
Description
The issue concerns the C-Media PCI sound driver in Linux, which does not use the get user function to access userspace, potentially facilitating the exploitation of vulnerabilities. Additionally, multiple vulnerabilities have been identified in the kernel packages of Red Hat Linux version 2.4.20, which can lead to breaches of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited remotely.
Recommendations
For Linux versions prior to 2.4.21, update to version 2.4.21 or later to resolve the issue.
For Red Hat Linux kernel versions 2.4.20, update to a newer version that addresses the identified vulnerabilities.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Linux
Red Hat