PT-2003-1097 · Linux+1 · Linux+1
Published
2003-05-22
·
Updated
2017-10-11
·
CVE-2003-0699
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux versions prior to 2.4.21
Red Hat Linux kernel versions 2.4.20
Description
The issue concerns the C-Media PCI sound driver in Linux, which does not use the get user function to access userspace, potentially facilitating the exploitation of vulnerabilities. Additionally, multiple vulnerabilities have been identified in the kernel packages of Red Hat Linux version 2.4.20, which can lead to breaches of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited remotely.
Recommendations
For Linux versions prior to 2.4.21, update to version 2.4.21 or later to resolve the issue.
For Red Hat Linux kernel versions 2.4.20, update to a newer version that addresses the identified vulnerabilities.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux
Red Hat