2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2003-0127" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2003-03-31T05:00:00.000" ,
2025-04-03 02:06:18 +00:00
"lastModified" : "2025-04-03T01:03:51.193" ,
"vulnStatus" : "Deferred" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 7.2 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "LOCAL" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "COMPLETE" ,
"integrityImpact" : "COMPLETE" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "COMPLETE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "HIGH" ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 10.0 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : true ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-Other"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "146F7A77-A950-4CAD-BDA9-C239696F569D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AD7A6B55-2F3B-422E-B1F2-80B482FE89AA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "70DCE8FF-40C3-44F7-8185-0422ADDA051B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7DAC3A7C-2092-46D4-908B-CF03F4217112"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "956B7F2F-DE46-492F-ACA3-BD5EE7EA14F3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DE77B8D6-EF2A-4EC2-AF75-B6FA48747781"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AAEC8651-9291-4CAE-AA49-C1CA4C7AE450"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5A6F3945-21ED-44C6-86D2-B7755A87014E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C4919EB3-625C-4D83-8DCB-72BCF05DF2C6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A5DDB008-E88E-473C-B030-AF9B6F5E4E48"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.10:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AA3D3E03-0ABE-4325-AD67-BA8EA16B6DBE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.11:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0E48C9A9-B7E6-4314-BCEF-8013BBB4276E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.12:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0EEF4480-D50B-464C-AE39-A12455DBC99F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.13:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6BBFD0DB-0A18-4545-9B4B-697AAC11E9C5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.14:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "15928E10-7D41-45B2-87D6-8AA10190A8EB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.15:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C18E13C4-F42D-4168-B25E-544E1549C46B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.16:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F0DB9B7C-3608-44E3-AE47-D231D1F7B8EC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.17:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C4947CDE-CB89-456B-8B5F-0E17B46BC893"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.18:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6ECB42B3-70C6-4019-8B8B-8EB7A84B39AF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.19:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BF701E58-35E8-4DDE-B832-C5A23E61A3CA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.20:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3C122CC4-B8CB-4AB9-8571-6F3D302F56A7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.21:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2498D898-D243-4D0C-9AEF-0138D19A68B9"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.22:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3924060B-1EC1-4003-B306-E327634E7797"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.23:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D45B43DF-FD4C-4C37-9569-1CCE450B8987"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.2.24:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "99879B2B-7FFB-4181-8928-13B7E17F36C6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C24A129D-2E5E-436C-95DE-AE75D2E8D092"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "55B85D5B-4EA1-4FCF-8D50-9C54E8FDA92F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "01408EC0-9C2D-4A44-8080-D7FC7E1A1FA1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5F49A384-7222-41F3-9BE1-4E18C00E50A6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "05520FE3-C48D-42E8-BC24-C2396BD46CBA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D865FBB6-E07D-492F-A75E-168B06C8ADEE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "598F24C2-0366-4799-865C-5EE4572B734B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D0399660-6385-45AB-9785-E504D8788146"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DCBC50EA-130C-41B7-83EA-C523B3C3AAD7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B91F6CBE-400F-4D0B-B893-34577B47A342"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.10:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1548ECFD-FCB5-4AE0-9788-42F61F25489F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.11:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6ABB9787-5497-4BDC-8952-F99CF60A89BD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.12:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "615F6BA2-CD51-4159-B28A-A018CA9FC25C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.13:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "093848CB-68A1-4258-8357-373A477FE4E2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.14:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E275F440-A427-465F-B314-BF0730C781DB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.15:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "98651D39-60CF-409F-8276-DBBB56B972AA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.16:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "067B8E09-C923-4DDA-92DB-4A2892CB526A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.17:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "9EBE3738-E530-4EC6-9FC6-1A063605BE05"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.18:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "474384F1-FB2D-4C00-A4CD-0C2C5AE42DB4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.19:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F677E992-8D37-438F-97DF-9D98B28F020C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.20:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "476687F9-722B-490C-BD0B-B5F2CD7891DC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:2.4.21:pre1:*:*:*:*:*:*" ,
"matchCriteriaId" : "8EEBFBB4-CC06-40D2-8DE9-22E82DBEFADA"
}
]
}
]
}
] ,
"references" : [
{
"url" : "ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2003-020.0.txt" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0134.html" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://marc.info/?l=bugtraq&m=105301461726555&w=2" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://rhn.redhat.com/errata/RHSA-2003-088.html" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://rhn.redhat.com/errata/RHSA-2003-098.html" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://security.gentoo.org/glsa/glsa-200303-17.xml" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-270" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-276" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-311" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-312" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-332" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-336" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.debian.org/security/2004/dsa-423" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.debian.org/security/2004/dsa-495" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.kb.cert.org/vuls/id/628849" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Third Party Advisory" ,
"US Government Resource"
]
} ,
{
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2003:038" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2003:039" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.redhat.com/support/errata/RHSA-2003-103.html" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.redhat.com/support/errata/RHSA-2003-145.html" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A254" ,
"source" : "cve@mitre.org"
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2003-020.0.txt" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0134.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://marc.info/?l=bugtraq&m=105301461726555&w=2" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://rhn.redhat.com/errata/RHSA-2003-088.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://rhn.redhat.com/errata/RHSA-2003-098.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://security.gentoo.org/glsa/glsa-200303-17.xml" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-270" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-276" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-311" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-312" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-332" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.debian.org/security/2003/dsa-336" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.debian.org/security/2004/dsa-423" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.debian.org/security/2004/dsa-495" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.kb.cert.org/vuls/id/628849" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Third Party Advisory" ,
"US Government Resource"
]
} ,
{
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2003:038" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2003:039" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.redhat.com/support/errata/RHSA-2003-103.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.redhat.com/support/errata/RHSA-2003-145.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A254" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2023-04-24 12:24:31 +02:00
}
]
}