The ioperm system call in Linux kernel 2.4.20 and earlier does not properly restrict privileges, which allows local users to gain read or write access to certain I/O ports.
Link | Tags |
---|---|
http://www.redhat.com/support/errata/RHSA-2003-147.html | vendor advisory |
http://www.turbolinux.com/security/TLSA-2003-41.txt | vendor advisory |
http://www.mandriva.com/security/advisories?name=MDKSA-2003:074 | vendor advisory |
http://www.debian.org/security/2003/dsa-336 | vendor advisory |
http://www.mandriva.com/security/advisories?name=MDKSA-2003:066 | vendor advisory |
http://www.redhat.com/support/errata/RHSA-2003-172.html | patch vendor advisory |
http://marc.info/?l=bugtraq&m=105301461726555&w=2 | vendor advisory |
http://www.debian.org/security/2003/dsa-311 | patch vendor advisory |
http://www.debian.org/security/2003/dsa-332 | vendor advisory |
http://www.debian.org/security/2003/dsa-312 | vendor advisory |
http://www.debian.org/security/2004/dsa-442 | vendor advisory |
http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0076.html | mailing list |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A278 | vdb entry signature |