CVE-2003-0337

The ckconfig command in lsadmin for Load Sharing Facility (LSF) 5.1 allows local users to execute arbitrary programs by modifying the LSF_ENVDIR environment variable to reference an alternate lsf.conf file, then modifying LSF_SERVERDIR to point to a malicious lim program, which lsadmin then executes.

Scoring

CVSS base score
0
EPSS probability
0.07%
Published
2003-05-23
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs