First published: Wed Jan 12 2000(Updated: )
get_it program in Corel Linux Update allows local users to gain root access by specifying an alternate PATH for the cp program.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Corel Linux | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0048 is considered a high severity vulnerability due to the potential for local users to gain root access.
To fix CVE-2000-0048, ensure that the get_it program does not allow users to specify an alternate PATH for executables.
CVE-2000-0048 affects local users on Corel Linux 1.0 systems.
CVE-2000-0048 is a local privilege escalation vulnerability.
CVE-2000-0048 allows local users to gain unauthorized root access by manipulating the execution of the cp program.