CVE-2000-0786
N/A
N/A
Summary
GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0389.html
- http://www.securityfocus.com/bid/1516
- http://marc.info/?l=bugtraq&m=96473640717095&w=2
- http://www.debian.org/security/2000/20000727
References
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0389.html
- http://www.securityfocus.com/bid/1516
- http://marc.info/?l=bugtraq&m=96473640717095&w=2
- http://www.debian.org/security/2000/20000727
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.