PT-2000-1907 · Netbsd Openbsd+2 · Eeprom+2
Published
2000-12-19
·
Updated
2018-05-03
·
CVE-2000-0997
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
OpenBSD (affected versions not specified)
NetBSD (affected versions not specified)
Description
The issue concerns format string vulnerabilities in the eeprom program, which could allow local attackers to gain root privileges. This affects OpenBSD and NetBSD, and possibly other operating systems.
Recommendations
For OpenBSD, update to a version that includes a fix for the eeprom program format string vulnerability.
For NetBSD, update to a version that includes a fix for the eeprom program format string vulnerability.
As a temporary workaround, consider restricting access to the eeprom program to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netbsd
Openbsd
Eeprom