uml_net in the kernel-utils package for Red Hat Linux 8.0 has incorrect setuid root privileges, which allows local users to modify network interfaces, e.g. by modifying ARP entries or placing interfaces into promiscuous mode.
References
Link | Resource |
---|---|
http://www.ciac.org/ciac/bulletins/n-044.shtml | |
http://www.iss.net/security_center/static/11276.php | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/134025 | US Government Resource |
http://www.redhat.com/support/errata/RHSA-2003-056.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/6801 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2004-09-01T04:00:00
Updated: 2007-11-13T00:00:00
Reserved: 2003-01-07T00:00:00
Link: CVE-2003-0019
JSON object: View
NVD Information
Status : Analyzed
Published: 2003-02-19T05:00:00.000
Modified: 2008-09-11T00:05:23.557
Link: CVE-2003-0019
JSON object: View
Redhat Information
No data.
CWE