7.2

CVE-2001-0873

Exploit
uuxqt in Taylor UUCP package does not properly remove dangerous long options, which allows local users to gain privileges by calling uux and specifying an alternate configuration file with the --config option.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ian Lance TaylorTaylor Uucp Version1.0.6
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.08% 0.606
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000425
Patch
Vendor Advisory
http://marc.info/?l=bugtraq&m=100715446131820
http://rhn.redhat.com/errata/RHSA-2001-165.html
http://www.calderasystems.com/support/security/advisories/CSSA-2001-033.0.txt
Patch
Vendor Advisory
http://www.debian.org/security/2001/dsa-079
http://www.novell.com/linux/security/advisories/2001_038_uucp_txt.html
http://www.securityfocus.com/archive/1/212892
Vendor Advisory
Exploit
http://www.securityfocus.com/bid/3312
Patch
Vendor Advisory
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/7099