Lucene search

K
cve[email protected]CVE-2003-0018
HistorySep 01, 2004 - 4:00 a.m.

CVE-2003-0018

2004-09-0104:00:00
web.nvd.nist.gov
43
cve-2003-0018
linux kernel
o_direct
file system corruption
security vulnerability

CVSS2

3.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:N/A:P

AI Score

5.8

Confidence

Low

EPSS

0

Percentile

5.1%

Linux kernel 2.4.10 through 2.4.21-pre4 does not properly handle the O_DIRECT feature, which allows local attackers with write privileges to read portions of previously deleted files, or cause file system corruption.

Affected configurations

NVD
Node
linuxlinux_kernelMatch2.4.10
OR
linuxlinux_kernelMatch2.4.11
OR
linuxlinux_kernelMatch2.4.12
OR
linuxlinux_kernelMatch2.4.13
OR
linuxlinux_kernelMatch2.4.14
OR
linuxlinux_kernelMatch2.4.15
OR
linuxlinux_kernelMatch2.4.16
OR
linuxlinux_kernelMatch2.4.17
OR
linuxlinux_kernelMatch2.4.18
OR
linuxlinux_kernelMatch2.4.19
VendorProductVersionCPE
linuxlinux_kernel2.4.16cpe:/o:linux:linux_kernel:2.4.16:::
linuxlinux_kernel2.4.18cpe:/o:linux:linux_kernel:2.4.18:::
linuxlinux_kernel2.4.14cpe:/o:linux:linux_kernel:2.4.14:::
linuxlinux_kernel2.4.17cpe:/o:linux:linux_kernel:2.4.17:::
linuxlinux_kernel2.4.19cpe:/o:linux:linux_kernel:2.4.19:::
linuxlinux_kernel2.4.11cpe:/o:linux:linux_kernel:2.4.11:::
linuxlinux_kernel2.4.10cpe:/o:linux:linux_kernel:2.4.10:::
linuxlinux_kernel2.4.15cpe:/o:linux:linux_kernel:2.4.15:::
linuxlinux_kernel2.4.13cpe:/o:linux:linux_kernel:2.4.13:::
linuxlinux_kernel2.4.12cpe:/o:linux:linux_kernel:2.4.12:::

CVSS2

3.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:N/A:P

AI Score

5.8

Confidence

Low

EPSS

0

Percentile

5.1%