VYPR
Unrated severityNVD Advisory· Published Oct 20, 2003· Updated Apr 16, 2026

CVE-2003-0740

CVE-2003-0740

Description

Stunnel 4.00, and 3.24 and earlier, leaks a privileged file descriptor returned by listen(), which allows local users to hijack the Stunnel server.

Affected products

23
  • Stunnel/Stunnel23 versions
    cpe:2.3:a:stunnel:stunnel:3.10:*:*:*:*:*:*:*+ 22 more
    • cpe:2.3:a:stunnel:stunnel:3.10:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.11:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.12:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.13:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.14:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.15:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.16:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.17:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.18:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.19:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.20:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.21:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.21a:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.21b:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.21c:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.22:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.24:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.3:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.4a:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.7:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.8:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:3.9:*:*:*:*:*:*:*
    • cpe:2.3:a:stunnel:stunnel:4.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.