10

CVE-2000-0844

Exploit

Some functions that implement the locale subsystem on Unix do not  properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.

Data is provided by the National Vulnerability Database (NVD)
CalderaOpenlinux Ebuilder Version3.0
ImmunixImmunix Version6.2
ConectivaLinux Version4.0
ConectivaLinux Version4.0es
ConectivaLinux Version4.1
ConectivaLinux Version4.2
ConectivaLinux Version5.0
ConectivaLinux Version5.1
SgiIrix Version6.2
SgiIrix Version6.3
SgiIrix Version6.4
SgiIrix Version6.5
SgiIrix Version6.5.1
SgiIrix Version6.5.2m
SgiIrix Version6.5.3
SgiIrix Version6.5.3f
SgiIrix Version6.5.3m
SgiIrix Version6.5.4
SgiIrix Version6.5.6
SgiIrix Version6.5.7
SgiIrix Version6.5.8
CalderaOpenlinux Eserver Version2.3
DebianDebian Linux Version2.0
DebianDebian Linux Version2.1
DebianDebian Linux Version2.2
DebianDebian Linux Version2.3
IbmAix Version3.2
IbmAix Version3.2.4
IbmAix Version3.2.5
IbmAix Version4.0
IbmAix Version4.1
IbmAix Version4.1.1
IbmAix Version4.1.2
IbmAix Version4.1.3
IbmAix Version4.1.4
IbmAix Version4.1.5
IbmAix Version4.2
IbmAix Version4.2.1
IbmAix Version4.3
IbmAix Version4.3.1
IbmAix Version4.3.2
MandrakesoftMandrake Linux Version7.0
MandrakesoftMandrake Linux Version7.1
RedhatLinux Version5.0
RedhatLinux Version5.1
RedhatLinux Version5.2
RedhatLinux Version6.0
RedhatLinux Version6.1
RedhatLinux Version6.2
SlackwareSlackware Linux Version7.0
SlackwareSlackware Linux Version7.1
SunSolaris Version2.6
SunSunos Version5.0
SunSunos Version5.1
SunSunos Version5.2
SunSunos Version5.3
SunSunos Version5.4
SunSunos Version5.5
SunSunos Version5.5.1
SunSunos Version5.7
SunSunos Version5.8
SuseSuse Linux Version6.1
SuseSuse Linux Version6.2
SuseSuse Linux Version6.3
SuseSuse Linux Version6.4
SuseSuse Linux Version7.0
TrustixSecure Linux Version1.0
TrustixSecure Linux Version1.1
TurbolinuxTurbolinux Version6.0
TurbolinuxTurbolinux Version6.0.1
TurbolinuxTurbolinux Version6.0.2
TurbolinuxTurbolinux Version6.0.3
TurbolinuxTurbolinux Version6.0.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.89% 0.734
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C