PT-2003-1097 · Linux+1 · Linux+1

Published

2003-05-22

·

Updated

2017-10-11

·

CVE-2003-0699

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux versions prior to 2.4.21 Red Hat Linux kernel versions 2.4.20
Description The issue concerns the C-Media PCI sound driver in Linux, which does not use the get user function to access userspace, potentially facilitating the exploitation of vulnerabilities. Additionally, multiple vulnerabilities have been identified in the kernel packages of Red Hat Linux version 2.4.20, which can lead to breaches of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited remotely.
Recommendations For Linux versions prior to 2.4.21, update to version 2.4.21 or later to resolve the issue. For Red Hat Linux kernel versions 2.4.20, update to a newer version that addresses the identified vulnerabilities. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-08108
BDU:2015-08110
BDU:2015-08112
BDU:2015-08116
BDU:2015-08126
BDU:2015-08129
CVE-2003-0699

Affected Products

Linux
Red Hat