PT-2000-1907 · Netbsd Openbsd+2 · Eeprom+2
Publicado
2000-12-19
·
Atualizado
2018-05-03
·
CVE-2000-0997
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
OpenBSD (affected versions not specified)
NetBSD (affected versions not specified)
Description
The issue concerns format string vulnerabilities in the eeprom program, which could allow local attackers to gain root privileges. This affects OpenBSD and NetBSD, and possibly other operating systems.
Recommendations
For OpenBSD, update to a version that includes a fix for the eeprom program format string vulnerability.
For NetBSD, update to a version that includes a fix for the eeprom program format string vulnerability.
As a temporary workaround, consider restricting access to the eeprom program to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Netbsd
Openbsd
Eeprom