Vulnerability Description
exit.c in Linux kernel 2.6-test9-CVS, as stored on kernel.bkbits.net, was modified to contain a backdoor, which could allow local users to elevate their privileges by passing __WCLONE|__WALL to the sys_wait4 function.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | 2.6_test9_cvs |
References
- http://www.securityfocus.com/bid/8987
- http://www.ussg.iu.edu/hypermail/linux/kernel/0311.0/0621.html
- http://www.ussg.iu.edu/hypermail/linux/kernel/0311.0/0627.htmlExploit
- http://www.ussg.iu.edu/hypermail/linux/kernel/0311.0/0630.htmlExploit
- http://www.securityfocus.com/bid/8987
- http://www.ussg.iu.edu/hypermail/linux/kernel/0311.0/0621.html
- http://www.ussg.iu.edu/hypermail/linux/kernel/0311.0/0627.htmlExploit
- http://www.ussg.iu.edu/hypermail/linux/kernel/0311.0/0630.htmlExploit
FAQ
What is CVE-2003-1161?
CVE-2003-1161 is a vulnerability with a CVSS score of 7.2 (HIGH). exit.c in Linux kernel 2.6-test9-CVS, as stored on kernel.bkbits.net, was modified to contain a backdoor, which could allow local users to elevate their privileges by passing __WCLONE|__WALL to the sy...
How severe is CVE-2003-1161?
CVE-2003-1161 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-1161?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.