Linux kernel 2.4.10 through 2.4.21-pre4 does not properly handle the O_DIRECT feature, which allows local attackers with write privileges to read portions of previously deleted files, or cause file system corruption.
2003-02-19T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 3.6 (LOW)
AV:L/AC:L/Au:N/C:P/I:N/A:P
3.9
4.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | linux | linux_kernel | 2.4.10 | Yes |
| Operating System | linux | linux_kernel | 2.4.11 | Yes |
| Operating System | linux | linux_kernel | 2.4.12 | Yes |
| Operating System | linux | linux_kernel | 2.4.13 | Yes |
| Operating System | linux | linux_kernel | 2.4.14 | Yes |
| Operating System | linux | linux_kernel | 2.4.15 | Yes |
| Operating System | linux | linux_kernel | 2.4.16 | Yes |
| Operating System | linux | linux_kernel | 2.4.17 | Yes |
| Operating System | linux | linux_kernel | 2.4.18 | Yes |
| Operating System | linux | linux_kernel | 2.4.19 | Yes |