CVE-2000-0867

Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:debian:debian_linux:2.1:*:slink:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:2.2:*:potato:*:*:*:*:*
cpe:2.3:o:mandrakesoft:mandrake_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*
cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*
cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*
cpe:2.3:o:slackware:slackware_linux:*:*:*:*:*:*:*:*
cpe:2.3:o:trustix:secure_linux:1.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:33

Type Values Removed Values Added
References () ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-032.0.txt - () ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-032.0.txt -
References () http://archives.neohapsis.com/archives/bugtraq/2000-09/0193.html - Vendor Advisory () http://archives.neohapsis.com/archives/bugtraq/2000-09/0193.html - Vendor Advisory
References () http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:050 - () http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:050 -
References () http://marc.info/?l=bugtraq&m=97726239017741&w=2 - () http://marc.info/?l=bugtraq&m=97726239017741&w=2 -
References () http://www.novell.com/linux/security/advisories/adv9_draht_syslogd_txt.html - () http://www.novell.com/linux/security/advisories/adv9_draht_syslogd_txt.html -
References () http://www.osvdb.org/5824 - () http://www.osvdb.org/5824 -
References () http://www.redhat.com/support/errata/RHSA-2000-061.html - () http://www.redhat.com/support/errata/RHSA-2000-061.html -
References () http://www.turbolinux.com/pipermail/tl-security-announce/2000-September/000023.html - () http://www.turbolinux.com/pipermail/tl-security-announce/2000-September/000023.html -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/5259 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/5259 -

Information

Published : 2000-11-14 05:00

Updated : 2024-11-20 23:33


NVD link : CVE-2000-0867

Mitre link : CVE-2000-0867

CVE.ORG link : CVE-2000-0867


JSON object : View

Products Affected

trustix

  • secure_linux

redhat

  • linux

mandrakesoft

  • mandrake_linux

debian

  • debian_linux

slackware

  • slackware_linux