PT-2000-1919 · Red Hat · Red Hat

Publicado

2000-12-11

·

Atualizado

2017-12-19

·

CVE-2000-1009

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Red Hat Linux version 6.2
Description The issue allows local users to obtain root privileges by modifying the RSH environmental variable to point to a Trojan horse program, as the dump utility in the affected system trusts the pathname specified by this variable.
Recommendations For Red Hat Linux version 6.2, update the system to prevent the dump utility from trusting the RSH environmental variable, or restrict access to the dump utility to prevent exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2000-1009

Produtos afetados

Red Hat