Back
CVE-2003-1474
slashem-tty in the FreeBSD Ports Collection is installed with write permissions for the games group, which allows local users with group games privileges to modify slashem-tty and execute arbitrary code as other users, as demonstrated using a separate vulnerability in LTris.
Published: Dec 31, 2003
Modified: Jun 16, 2026
CWE-264
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| freebsd | slashem-tty | 0.0.6e.4f.8 |
GitHub Security Advisory GHSA-525w-wcmh-7q9w
slashem-tty in the FreeBSD Ports Collection is installed with write permissions for the games...
References (6)
- http://www.derkeiler.com/Mailing-Lists/Full-Disclosure/2003-05/0122.html
- http://www.iss.net/security_center/static/11979.php
- http://www.securityfocus.com/archive/1/321001
- http://www.derkeiler.com/Mailing-Lists/Full-Disclosure/2003-05/0122.html
- http://www.iss.net/security_center/static/11979.php
- http://www.securityfocus.com/archive/1/321001
Risk Scores
CVSS Score
7.2 / 10
EPSS Score
0.36%
Top 71% most likely to be exploited
Threat Score
28.9 / 100
Data Sources
NVD
EPSS
GitHub