First published: Thu Sep 04 2003(Updated: )
Stunnel 4.00, and 3.24 and earlier, leaks a privileged file descriptor returned by listen(), which allows local users to hijack the Stunnel server.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
stunnel | =3.21c | |
stunnel | =3.7 | |
stunnel | =3.3 | |
stunnel | =3.21b | |
stunnel | =3.14 | |
stunnel | =3.4a | |
stunnel | =3.22 | |
stunnel | =3.18 | |
stunnel | =3.20 | |
stunnel | =3.10 | |
stunnel | =3.11 | |
stunnel | =3.19 | |
stunnel | =3.16 | |
stunnel | =3.17 | |
stunnel | =3.24 | |
stunnel | =3.12 | |
stunnel | =3.13 | |
stunnel | =3.21 | |
stunnel | =3.8 | |
stunnel | =3.15 | |
stunnel | =3.21a | |
stunnel | =3.9 | |
stunnel | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0740 is classified as a critical vulnerability due to its potential for local users to hijack the Stunnel server.
To mitigate CVE-2003-0740, upgrade Stunnel to version 4.1 or later to ensure the privileged file descriptor leak is addressed.
CVE-2003-0740 affects Stunnel versions 4.0 and earlier, including 3.24 and lower versions.
Exploitation of CVE-2003-0740 allows local users to gain unauthorized access and control over the Stunnel service.
CVE-2003-0740 is not a remote access vulnerability; it specifically enables local user exploitation of the Stunnel server.