Name | CVE-2003-0461 |
Description | /proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
References | DSA-358, DSA-423 |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
kernel-image-2.4.17-ia64 | source | woody | kernel-image-2.4.17-ia64 | DSA-423 | ||
kernel-image-2.4.18-1-alpha | source | woody | 2.4.18-10. | DSA-358 | ||
kernel-image-2.4.18-1-i386 | source | woody | 2.4.18-11 | DSA-358 | ||
kernel-image-2.4.18-i386bf | source | woody | 2.4.18-5woody4 | DSA-358 | ||
kernel-source-2.4.18 | source | woody | 2.4.18-13 | DSA-358 | ||
kernel-source-2.4.27 | source | (unstable) | 2.4.27-1 | |||
kernel-source-2.6.8 | source | sarge | (not affected) | |||
linux-2.6 | source | (unstable) | (not affected) |
[sarge] - kernel-source-2.6.8 <not-affected> (Fixed before upload into archive; 2.6.1)
- linux-2.6 <not-affected> (Fixed before upload into archive; 2.6.1)