1.2
CVE-2000-0959
- EPSS 0.3%
- Veröffentlicht 19.12.2000 05:00:00
- Zuletzt bearbeitet 23.09.2026 13:10:00
- Erkennungen
glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.3% | 0.217 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 1.2 | 1.9 | 2.9 |
AV:L/AC:H/Au:N/C:N/I:P/A:N
|
http://www.securityfocus.com/archive/1/85028
http://www.securityfocus.com/bid/1719
https://exchange.xforce.ibmcloud.com/vulnerabilities/5299