CVE-2003-0461: Low severity redhat Linux vulnerability
Published Jul 25, 2003
·Updated
/proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords.
Affected Software
5 affected components
redhat Linux=7.2
redhat Linux=8.0
redhat Linux=7.3
redhat Linux=9.0
redhat Linux=7.1
Remediation
Patch Available
Patch Available
Event History
Jul 25, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Aug 27, 2003
Data Sourced
via NVD·04:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0461?
CVE-2003-0461 is considered to have a moderate severity level as it can expose sensitive information to local users.
2
How do I fix CVE-2003-0461?
To fix CVE-2003-0461, upgrade to a patched version of the affected Red Hat Linux systems or apply the recommended security updates.
3
What versions are affected by CVE-2003-0461?
CVE-2003-0461 affects Red Hat Linux versions 7.1, 7.2, 7.3, 8.0, and 9.0.
4
Who can exploit CVE-2003-0461?
CVE-2003-0461 can be exploited by local users with access to the system.
5
What type of information does CVE-2003-0461 reveal?
CVE-2003-0461 reveals the exact number of characters used in serial links, which may include sensitive information like password lengths.