Vulnerability Details CVE-2003-0489
tcptraceroute 1.4 and earlier does not fully drop privileges after obtaining a file descriptor for capturing packets, which may allow local users to gain access to the descriptor via a separate vulnerability in tcptraceroute.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 13.3%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2003-0489
-
cpe:2.3:a:michael_c._toren:tcptraceroute:*