PT-2003-2533 · Red Hat+2 · Red Hat+2

Publicado

1970-01-01

·

Atualizado

2017-10-11

·

CVE-2003-0984

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions 2.4.23 and earlier Red Hat Linux kernel versions 2.4.20 Debian GNU/Linux kernel versions 2.4.18 and 2.4.19
Description The issue affects the Linux kernel and can lead to a breach of confidentiality, integrity, and availability of protected information. The vulnerabilities can be exploited remotely. The real-time clock (RTC) routines in the Linux kernel do not properly initialize their structures, which could leak kernel data to user space.
Recommendations For Linux kernel versions 2.4.23 and earlier, update to a version later than 2.4.23. For Red Hat Linux kernel versions 2.4.20, update to a version later than 2.4.20. For Debian GNU/Linux kernel versions 2.4.18 and 2.4.19, update to a version later than 2.4.19. As a temporary workaround, consider restricting access to the vulnerable kernel components until a patch is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

BDU:2015-03380
BDU:2015-03381
BDU:2015-03382
BDU:2015-03383
BDU:2015-03384
BDU:2015-03385
BDU:2015-03576
BDU:2015-03577
BDU:2015-08108
BDU:2015-08110
BDU:2015-08112
BDU:2015-08116
BDU:2015-08126
BDU:2015-08129
CVE-2003-0984
DSA-1067-1
DSA-1069-1
DSA-1070-1
DSA-1082-1
RHSA-2004:188

Produtos afetados

Debian
Linux Kernel
Red Hat