CLA-2003:736Vendor advisory
http://distro.conectiva.com.br/atualizacoes?id=a&anuncio=000736 CVE-2003-0740
Stunnel 3.24/4.00 - Daemon Hijacking
Record summary
CVE-2003-0740 has a selected CVSS score of 4.6; EIP currently links 1 catalogued exploit.
Description
Stunnel 4.00, and 3.24 and earlier, leaks a privileged file descriptor returned by listen(), which allows local users to hijack the Stunnel server.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBStunnel 3.24/4.00 - Daemon HijackingExploitDB exploitby Steve GrubbNot analyzed1 file
References
520030903 Stunnel-3.x Daemon Hijackingmailing list
http://marc.info/?l=bugtraq&m=106260760211958&w=2 MDKSA-2003:108Vendor advisory
http://www.mandriva.com/security/advisories?name=MDKSA-2003:108 RHSA-2003:297Vendor advisory
http://www.redhat.com/support/errata/RHSA-2003-297.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2003-0740