First published: Tue Nov 18 2003(Updated: )
The getifaddrs function in GNU libc (glibc) 2.2.4 and earlier allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Zebra | =0.92a | |
SGI ProPack | =2.2.1 | |
GNU Zebra | =0.93b | |
GNU C Library | =2.3.2 | |
SGI ProPack | =2.3 | |
Quagga Routing Software Suite | =0.96.2 | |
GNU Zebra | =0.91a | |
GNU Zebra | =0.93a | |
Red Hat Enterprise Linux | =2.1 | |
Red Hat Enterprise Linux | =2.1 | |
Red Hat Enterprise Linux | =2.1 | |
Red Hat Linux Advanced Workstation | =2.1 | |
Red Hat Enterprise Linux | =3.0 | |
Red Hat Enterprise Linux | =2.1 | |
Red Hat Enterprise Linux | =3.0 | |
Red Hat Enterprise Linux | =2.1 | |
Red Hat Enterprise Linux | =2.1 | |
Intel IA-64 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0859 is classified as a medium severity vulnerability due to its potential to cause a denial of service.
To fix CVE-2003-0859, upgrade to a version of GNU libc that is 2.3.3 or later, which contains the necessary patches.
CVE-2003-0859 affects local users of systems running GNU libc versions 2.2.4 and earlier.
Vulnerable systems include those running GNU libc 2.2.4 and earlier, as well as specific versions of Red Hat Enterprise Linux and GNU Zebra.
CVE-2003-0859 cannot be exploited remotely as it requires local user access to trigger the denial of service.