CVE-2000-0130: Buffer Overflow
Buffer overflow in SCO scohelp program allows remote attackers to execute commands.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Xinuos UnixWare/scohelpfrom your environment.Uninstall the 'scohelp' program or remove its executable from systems if it is not required, keeping the component absent until a fix is provided by the vendor.
- Configuration
Disable or stop the 'scohelp' program/service on affected systems until a vendor patch is available.
Xinuos UnixWare (scohelp) enabled = false - Compensating control
Block or restrict remote access to the 'scohelp' service using network firewall rules, ACLs, or host-based firewalls; isolate affected hosts from untrusted networks and allow access only from trusted management IPs.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0130?
CVE-2000-0130 is considered a high severity vulnerability due to its potential for remote command execution.
How do I fix CVE-2000-0130?
To fix CVE-2000-0130, users should apply the latest patches provided by Xinuos for the affected UnixWare versions.
Which versions of UnixWare are affected by CVE-2000-0130?
CVE-2000-0130 affects UnixWare versions 7.0, 7.0.1, and 7.1.
What impact does CVE-2000-0130 have on systems?
CVE-2000-0130 can allow remote attackers to execute arbitrary commands on the affected systems.
Is CVE-2000-0130 a known vulnerability?
Yes, CVE-2000-0130 is a publicly known vulnerability that has been documented and recognized by the cybersecurity community.