漏洞描述:在Linux kernel的mremap()函数边界测定中存在漏洞。 受影响平台: Linux 7.1, 7.2, 7.3, 8.0, and 9 Enterprise Linux AS (v2.1), ES (v2.1) and WS (v2.1) Enterprise Linux AS (v.3), ES (v. 3), and WS (v. 3) Debian GNU/Linux 3.0 (woody) Linux Advanced Workstation 2.1 for the Itanium Processor 受影响软件:Linux kernel versions 2.4.23及以前的版本 损害程度: 一个本地的攻击者可以获得root用户权限。 解决方案:安装适当的升级后的Red Hat kernel包。 漏洞评估:中危。 相关链接: CIAC BULLETIN:http://www.ciac.org/ciac/bulletins/o-045.shtml ORIGINAL BULLETIN: https://rhn.redhat.com/errata/RHSA-2003-417.html https://rhn.redhat.com/errata/RHSA-2003-418.html https://rhn.redhat.com/errata/RHSA-2003-419.html CVE/CAN: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name= CAN-2003-0985