CVE-2004-1337: High severity GNU Realtime Linux Security Module vulnerability
The POSIX Capability Linux Security Module (LSM) for Linux kernel 2.6 does not properly handle the credentials of a process that is launched before the module is loaded, which allows local users to gain privileges.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1337?
CVE-2004-1337 is considered a high severity vulnerability due to its potential to allow local users to gain elevated privileges.
How do I fix CVE-2004-1337?
To fix CVE-2004-1337, ensure that the POSIX Capability Linux Security Module is properly loaded before launching processes.
What systems are affected by CVE-2004-1337?
CVE-2004-1337 affects systems running Linux kernel 2.6, specifically versions of Gnu Realtime Linux Security Module and certain Ubuntu and Conectiva Linux distributions.
Who can exploit CVE-2004-1337?
Local users with access to the system can exploit CVE-2004-1337 to gain unauthorized privileges.
Is there a patch available for CVE-2004-1337?
Yes, a patch to address CVE-2004-1337 is typically provided in system updates for affected Linux distributions.