CVE-2000-0145: High severity Debian Debian Linux vulnerability

Published Feb 5, 2000
·
Updated

The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions.

Affected Software

1 affected component
Debian Debian Linux=4.0

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    Remove the world-writable permission bits from the libguile.so library installed by gnucash (for example, run: chmod o-w /path/to/libguile.so). Ensure the file is owned by the appropriate privileged user/group and that write access is limited to administrators. Verify package reinstalls do not restore insecure permissions and fix packaging if necessary.

    Debian GNU/Linux - gnucash libguile.so file_permissions = remove world-writable

Event History

Feb 5, 2000
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Mar 22, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-2000-0145?

CVE-2000-0145 is considered a moderate severity vulnerability due to the world-writable permissions of the libguile.so library.

2

How do I fix CVE-2000-0145?

To fix CVE-2000-0145, modify the permissions of the libguile.so library to remove world-writable access.

3

Which systems are affected by CVE-2000-0145?

CVE-2000-0145 specifically affects Debian GNU/Linux version 4.0.

4

What is the cause of CVE-2000-0145?

CVE-2000-0145 is caused by the libguile.so library being installed with world-writable permissions, allowing unauthorized modification.

5

What are the potential impacts of CVE-2000-0145?

The potential impacts of CVE-2000-0145 include unauthorized access and modification of the libguile.so library, leading to exploitation of the system.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203