2.1

CVE-2001-0170

glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.

Data is provided by the National Vulnerability Database (NVD)
ImmunixImmunix Version7.0_beta
ConectivaLinux Version4.0
ConectivaLinux Version4.0es
ConectivaLinux Version4.1
ConectivaLinux Version4.2
ConectivaLinux Version5.0
ConectivaLinux Version5.1
ConectivaLinux Version6.0
ConectivaLinux Versionecommerce
ConectivaLinux Versiongraficas
DebianDebian Linux Version2.3
RedhatLinux Version7.0 Editionalpha
RedhatLinux Version7.0 Editioni386
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.26% 0.465
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:P/I:N/A:N