Beveiligingsadvies

CVE-2001-0087

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2001-02-02 05:00:00
Laatst bijgewerkt 2024-08-08 04:06:55
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

itetris/xitetris 1.6.2 and earlier trusts the PATH environmental variable to find and execute the gunzip program, which allows local users to gain root privileges by changing their PATH so that it points to a malicious gunzip program.