Back

CVE-2003-1474

slashem-tty in the FreeBSD Ports Collection is installed with write permissions for the games group, which allows local users with group games privileges to modify slashem-tty and execute arbitrary code as other users, as demonstrated using a separate vulnerability in LTris.

Published: Dec 31, 2003 Modified: Jun 16, 2026
CWE-264

CVSS Metrics

Affected Products (1)

Vendor Product Version
freebsd slashem-tty 0.0.6e.4f.8

GitHub Security Advisory GHSA-525w-wcmh-7q9w

slashem-tty in the FreeBSD Ports Collection is installed with write permissions for the games...

Risk Scores

CVSS Score 7.2 / 10
EPSS Score 0.36%

Top 71% most likely to be exploited

Threat Score 28.9 / 100

Data Sources

NVD EPSS GitHub