uml_net in the kernel-utils package for Red Hat Linux 8.0 has incorrect setuid root privileges, which allows local users to modify network interfaces, e.g. by modifying ARP entries or placing interfaces into promiscuous mode.
References
Link | Resource |
---|---|
http://www.redhat.com/support/errata/RHSA-2003-056.html | Patch Vendor Advisory |
http://www.iss.net/security_center/static/11276.php | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/134025 | US Government Resource |
http://www.ciac.org/ciac/bulletins/n-044.shtml | |
http://www.securityfocus.com/bid/6801 |
Configurations
Information
Published : 2003-02-18 21:00
Updated : 2008-09-10 17:05
NVD link : CVE-2003-0019
Mitre link : CVE-2003-0019
JSON object : View
CWE
Products Affected
redhat
- linux