Security Advisory

CVE-2000-0803

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2001-05-07 04:00:00
Last updated 2024-08-08 05:28:41
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

GNU Groff uses the current working directory to find a device description file, which allows a local user to gain additional privileges by including a malicious postpro directive in the description file, which is executed when another user runs groff.