3.6
CVSSv2

CVE-2003-0246

Published: 16/06/2003 Updated: 11/10/2017
CVSS v2 Base Score: 3.6 | Impact Score: 4.9 | Exploitability Score: 3.9
VMScore: 320
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The ioperm system call in Linux kernel 2.4.20 and previous versions does not properly restrict privileges, which allows local users to gain read or write access to certain I/O ports.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.4.1

linux linux kernel 2.4.10

linux linux kernel 2.4.11

linux linux kernel 2.4.18

linux linux kernel 2.4.19

linux linux kernel 2.4.7

linux linux kernel 2.4.8

linux linux kernel 2.5.13

linux linux kernel 2.4.0

linux linux kernel 2.4.16

linux linux kernel 2.4.17

linux linux kernel 2.4.5

linux linux kernel 2.4.6

linux linux kernel 2.5.11

linux linux kernel 2.5.12

linux linux kernel 2.5.2

linux linux kernel 2.5.20

linux linux kernel 2.5.27

linux linux kernel 2.5.28

linux linux kernel 2.5.34

linux linux kernel 2.5.35

linux linux kernel 2.5.36

linux linux kernel 2.5.42

linux linux kernel 2.5.43

linux linux kernel 2.5.5

linux linux kernel 2.5.50

linux linux kernel 2.5.58

linux linux kernel 2.5.59

linux linux kernel 2.5.65

linux linux kernel 2.5.66

linux linux kernel 2.4.12

linux linux kernel 2.4.13

linux linux kernel 2.4.2

linux linux kernel 2.4.20

linux linux kernel 2.4.9

linux linux kernel 2.5.0

linux linux kernel 2.5.16

linux linux kernel 2.5.17

linux linux kernel 2.5.23

linux linux kernel 2.5.24

linux linux kernel 2.5.30

linux linux kernel 2.5.31

linux linux kernel 2.5.39

linux linux kernel 2.5.4

linux linux kernel 2.5.46

linux linux kernel 2.5.47

linux linux kernel 2.5.53

linux linux kernel 2.5.54

linux linux kernel 2.5.61

linux linux kernel 2.5.62

linux linux kernel 2.5.69

linux linux kernel 2.5.7

linux linux kernel 2.5.14

linux linux kernel 2.5.15

linux linux kernel 2.5.21

linux linux kernel 2.5.22

linux linux kernel 2.5.29

linux linux kernel 2.5.3

linux linux kernel 2.5.37

linux linux kernel 2.5.38

linux linux kernel 2.5.44

linux linux kernel 2.5.45

linux linux kernel 2.5.51

linux linux kernel 2.5.52

linux linux kernel 2.5.6

linux linux kernel 2.5.60

linux linux kernel 2.5.67

linux linux kernel 2.5.68

linux linux kernel 2.4.14

linux linux kernel 2.4.15

linux linux kernel 2.4.3

linux linux kernel 2.4.4

linux linux kernel 2.5.1

linux linux kernel 2.5.10

linux linux kernel 2.5.18

linux linux kernel 2.5.19

linux linux kernel 2.5.25

linux linux kernel 2.5.26

linux linux kernel 2.5.32

linux linux kernel 2.5.33

linux linux kernel 2.5.40

linux linux kernel 2.5.41

linux linux kernel 2.5.48

linux linux kernel 2.5.49

linux linux kernel 2.5.55

linux linux kernel 2.5.56

linux linux kernel 2.5.57

linux linux kernel 2.5.63

linux linux kernel 2.5.64

linux linux kernel 2.5.8

linux linux kernel 2.5.9

Vendor Advisories

A number of vulnerabilities have been discovered in the Linux kernel CAN-2002-1380: Linux kernel 22x allows local users to cause a denial of service (crash) by using the mmap() function with a PROT_READ parameter to access non-readable memory pages through the /proc/pid/mem interface CVE-2002-0429: The iBCS routines in arch/i386/kernel/t ...
A number of vulnerabilities have been discovered in the Linux kernel CVE-2002-0429: The iBCS routines in arch/i386/kernel/trapsc for Linux kernels 2418 and earlier on x86 systems allow local users to kill arbitrary processes via a binary compatibility interface (lcall) CAN-2003-0001: Multiple ethernet Network Interface Card (NIC) device ...
Several security related problems have been fixed in the Linux kernel 2417 used for the S/390 architecture, mostly by backporting fixes from 2418 and incorporating recent security fixes The corrections are listed below with the identification from the Common Vulnerabilities and Exposures (CVE) project: CVE-2002-0429: The iBCS routines in a ...
A number of vulnerabilities have been discovered in the Linux kernel CVE-2002-0429: The iBCS routines in arch/i386/kernel/trapsc for Linux kernels 2418 and earlier on x86 systems allow local users to kill arbitrary processes via a binary compatibility interface (lcall) CAN-2003-0001: Multiple ethernet Network Interface Card (NIC) device ...