First published: Thu Feb 24 2000(Updated: )
setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverrc file.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Corel Linux | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0195 is classified as a high severity vulnerability due to the potential for local users to gain root access.
To mitigate CVE-2000-0195, ensure that the setxconf command does not allow unprivileged users to execute arbitrary .xserverrc files.
CVE-2000-0195 affects local users of Corel Linux version 1.0.
An attacker exploiting CVE-2000-0195 can execute arbitrary commands as the root user on the affected system.
While CVE-2000-0195 is an older vulnerability, organizations using legacy systems with Corel Linux 1.0 should still consider it a security risk.