# CVE-2003-0308

## Summary

- **CVE ID:** CVE-2003-0308
- **Severity:** UNKNOWN
- **CVSS Score:** 0
- **CWE:** N/A
- **Published:** May 17, 2003
- **Last Modified:** Mar 16, 2026

## Description

The Sendmail 8.12.3 package in Debian GNU/Linux 3.0 does not securely create temporary files, which could allow local users to gain additional privileges via (1) expn, (2) checksendmail, or (3) doublebounce.pl.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://www.debian.org/security/2003/dsa-305)
- [CNA](http://www.openwall.com/lists/oss-security/2008/10/30/2)
- [CNA](http://dev.gentoo.org/~rbu/security/debiantemp/sendmail-base)
- [CNA](http://bugs.debian.org/496408)
- [CNA](https://bugs.gentoo.org/show_bug.cgi?id=235770)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.06%
- **EPSS Percentile:** 19.1

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-17._