CVE-2004-1116: High severity gentoo linux vulnerability
The init scripts in Great Internet Mersenne Prime Search (GIMPS) 23.9 and earlier execute user-owned programs with root privileges, which allows local users to gain privileges by modifying the programs.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1116?
CVE-2004-1116 is considered a high severity vulnerability due to its potential for local privilege escalation.
How do I fix CVE-2004-1116?
To fix CVE-2004-1116, users should upgrade to a version of GIMPS later than 23.9 that does not have this vulnerability.
Who is affected by CVE-2004-1116?
CVE-2004-1116 affects users of Great Internet Mersenne Prime Search (GIMPS) version 23.9 and earlier who are running on Gentoo Linux.
What are the risks associated with CVE-2004-1116?
The risks of CVE-2004-1116 include unauthorized access and control over the system by local users with modified programs executed with root privileges.
Is there a workaround for CVE-2004-1116?
A temporary workaround for CVE-2004-1116 is to restrict access to the GIMPS init scripts until the software can be upgraded.