CVE-2004-1295

The slip_down function in slip.c for the uml_net program in uml-utilities 20030903, when uml_net is installed setuid root, does not verify whether the calling user has sufficient permission to disable an interface, which allows local users to cause a denial of service (network service disabled).
Configurations

Configuration 1 (hide)

cpe:2.3:a:uml-utilities:uml-utilities:2003-09-03:*:*:*:*:*:*:*

History

20 Nov 2024, 23:50

Type Values Removed Values Added
References () http://tigger.uic.edu/~jlongs2/holes/uml-utilites.txt - Exploit, Vendor Advisory () http://tigger.uic.edu/~jlongs2/holes/uml-utilites.txt - Exploit, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/18562 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/18562 -

Information

Published : 2005-01-10 05:00

Updated : 2024-11-20 23:50


NVD link : CVE-2004-1295

Mitre link : CVE-2004-1295

CVE.ORG link : CVE-2004-1295


JSON object : View

Products Affected

uml-utilities

  • uml-utilities