VulnerabilityModified
CVE-2000-0701
The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges.
MEDIUM 4.6EPSS 0.39%
Does this matter?
Lower severity and a low EPSS score (0.39%). Track it; it rarely justifies an emergency change on its own.
Description
The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges.
- CVSS 2.0
- 4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 0.39% probability · 32th percentile
- CISA KEV
- Not listed
- Affected
- gnu/mailman · conectiva/linux · redhat/linux
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0474.htmlPatch, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0479.htmlVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2000-030.html
- http://www.securityfocus.com/archive/1/73220Patch, Vendor Advisory
- http://www.securityfocus.com/bid/1539Patch, Vendor Advisory
- http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000802105050.A11733%40rak.isternet.sk
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0474.htmlPatch, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0479.htmlVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2000-030.html
- http://www.securityfocus.com/archive/1/73220Patch, Vendor Advisory
- http://www.securityfocus.com/bid/1539Patch, Vendor Advisory
- http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000802105050.A11733%40rak.isternet.sk
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.