Overview
Red Hat Enterprise Linux kernel prior to version 2.4.21 does not perform adequate checking of eflags when in 32-bit ptrace emulation mode. This could allow a local user to gain elevated or root privileges.
Description
The Linux kernel handles the basic functionality of the operating system. There is a vulnerability in the checking of eflags when in 32-bit ptrace emulation mode allowing a local user to gain elevated or root privileges. This vulnerability is reported to only affect kernels built for the AMD64 architecture. |
Impact
A local user could gain elevated or root privileges. |
Solution
Upgrade or Apply Patch |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
Acknowledgements
Thanks to Red Hat Inc. for the information contained in their advisory.
This document was written by Damon Morda.
Other Information
CVE IDs: | CVE-2004-0001 |
Severity Metric: | 2.95 |
Date Public: | 2004-01-16 |
Date First Published: | 2004-01-20 |
Date Last Updated: | 2004-01-20 16:14 UTC |
Document Revision: | 12 |