CVE-2000-0184: Low severity redhat Linux vulnerability

Published Mar 9, 2000
·
Updated

Linux printtool sets the permissions of printer configuration files to be world-readable, which allows local attackers to obtain printer share passwords.

Affected Software

5 affected components
redhat Linux=6.1
Mandrakesoft Mandrake Linux=7.0
redhat Linux=6.1
redhat Linux=6.1
redhat Linux=6.2

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    Change filesystem permissions on printer configuration files created by printtool to remove world-readable access and restrict read access to root or authorized users (for example, remove the 'others' read bit with chmod o-r on the affected files and ensure appropriate owner/group settings).

    printtool (printer configuration files) file_permissions = remove world-readable permission (no read for others)
  2. Operational

    Assume printer share passwords may have been exposed; rotate printer share passwords and related credentials, and audit access to printer configuration files and logs for signs of unauthorized access before and after applying the permission changes.

Event History

Mar 9, 2000
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Apr 25, 2000
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-2000-0184?

The severity of CVE-2000-0184 is considered medium as it allows local attackers to obtain sensitive printer share passwords due to improper file permissions.

2

How do I fix CVE-2000-0184?

To fix CVE-2000-0184, ensure that printer configuration files are set to restrict access only to authorized users by modifying their file permissions.

3

Which platforms are affected by CVE-2000-0184?

CVE-2000-0184 affects specific versions of Mandrake Linux 7.0 and Red Hat Linux versions 6.1 and 6.2 across various architectures.

4

What is the impact of CVE-2000-0184?

The impact of CVE-2000-0184 allows local attackers to read sensitive printer configuration files, potentially exposing printer share passwords.

5

Is CVE-2000-0184 still a concern today?

CVE-2000-0184 is generally not a concern today due to the age of the affected systems, but systems using these outdated versions may still be at risk.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203