CVE-2003-0828 describes a buffer overflow vulnerability in the freesweep utility within Debian GNU/Linux 3.0. This flaw allows local users to escalate privileges to the "games" group by manipulating environment variables. With a CVSS score of 4.6, it is considered a low-severity vulnerability, requiring local access and low attack complexity to achieve partial confidentiality, integrity, and availability impacts. While there is no evidence of active exploitation, no known public exploit code, and it is not listed in the KEV catalog, the vulnerability has garnered significant community discussion, indicating awareness among security researchers.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
0.88CPE matchmatch criteria | cpe:2.3:a:gus_and_psilord:freesweep:0.88:*:*:*:*:*:*:* | ||
0.90CPE matchmatch criteria | cpe:2.3:a:gus_and_psilord:freesweep:0.90:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.