CVE-2000-0666

rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:conectiva:linux:4.0:*:*:*:*:*:*:*
cpe:2.3:o:conectiva:linux:4.0es:*:*:*:*:*:*:*
cpe:2.3:o:conectiva:linux:4.1:*:*:*:*:*:*:*
cpe:2.3:o:conectiva:linux:4.2:*:*:*:*:*:*:*
cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*
cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:2.2:*:alpha:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:2.2:*:powerpc:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:2.2:*:sparc:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:2.3:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:2.3:*:alpha:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:2.3:*:powerpc:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:2.3:*:sparc:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:6.3:*:ppc:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:6.3:alpha:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:6.4:*:ppc:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:6.4:alpha:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:trustix:secure_linux:1.0:*:*:*:*:*:*:*
cpe:2.3:o:trustix:secure_linux:1.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:33

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2000-07/0206.html - Exploit, Patch, Vendor Advisory () http://archives.neohapsis.com/archives/bugtraq/2000-07/0206.html - Exploit, Patch, Vendor Advisory
References () http://archives.neohapsis.com/archives/bugtraq/2000-07/0230.html - () http://archives.neohapsis.com/archives/bugtraq/2000-07/0230.html -
References () http://archives.neohapsis.com/archives/bugtraq/2000-07/0236.html - () http://archives.neohapsis.com/archives/bugtraq/2000-07/0236.html -
References () http://archives.neohapsis.com/archives/bugtraq/2000-07/0260.html - () http://archives.neohapsis.com/archives/bugtraq/2000-07/0260.html -
References () http://www.calderasystems.com/support/security/advisories/CSSA-2000-025.0.txt - () http://www.calderasystems.com/support/security/advisories/CSSA-2000-025.0.txt -
References () http://www.cert.org/advisories/CA-2000-17.html - US Government Resource () http://www.cert.org/advisories/CA-2000-17.html - US Government Resource
References () http://www.redhat.com/support/errata/RHSA-2000-043.html - () http://www.redhat.com/support/errata/RHSA-2000-043.html -
References () http://www.securityfocus.com/bid/1480 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/1480 - Exploit, Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/4939 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/4939 -

Information

Published : 2000-07-16 04:00

Updated : 2024-11-20 23:33


NVD link : CVE-2000-0666

Mitre link : CVE-2000-0666

CVE.ORG link : CVE-2000-0666


JSON object : View

Products Affected

redhat

  • linux

suse

  • suse_linux

conectiva

  • linux

debian

  • debian_linux

trustix

  • secure_linux