CVE-2004-2073
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/02/2004
Last modified:
03/04/2025
Description
Linux-VServer 1.24 allows local users with root privileges on a virtual server to gain access to the filesystem outside the virtual server via a modified chroot-again exploit using the chmod command.
Impact
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:vserver:linux-vserver:1.20:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vserver:linux-vserver:1.21:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vserver:linux-vserver:1.22:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vserver:linux-vserver:1.23:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vserver:linux-vserver:1.24:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/10816
- http://www.linux-vserver.org/index.php?page=ChangeLog
- http://www.osvdb.org/3875
- http://www.securityfocus.com/archive/1/353003
- http://www.securityfocus.com/bid/9596
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15073
- http://secunia.com/advisories/10816
- http://www.linux-vserver.org/index.php?page=ChangeLog
- http://www.osvdb.org/3875
- http://www.securityfocus.com/archive/1/353003
- http://www.securityfocus.com/bid/9596
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15073



