CVE-2000-0229: High severity SUSE SuSE Linux vulnerability
gpm-root in the gpm package does not properly drop privileges, which allows local users to gain privileges by starting a utility from gpm-root.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Alessandro Rubini GPM (gpm-root)from your environment.Uninstall the gpm package or remove the gpm-root binary from affected systems if it is not required to eliminate the privilege-escalation vector.
- Configuration
Restrict execution of gpm-root to the root account only (remove execute permission for non-privileged users) until an official fix is available.
gpm-root (gpm package) execution access = root-only - Compensating control
If removal or permission changes are not possible, apply host-based controls to prevent unprivileged users from starting gpm-root (for example: enforce strict file permissions, restrict via sudoers, or use MAC policies such as SELinux/AppArmor) and monitor attempts to execute gpm-root.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0229?
CVE-2000-0229 is classified as a local privilege escalation vulnerability.
How do I fix CVE-2000-0229?
To fix CVE-2000-0229, update the gpm package to the latest version that addresses this vulnerability.
Who is affected by CVE-2000-0229?
CVE-2000-0229 affects local users on systems running the vulnerable versions of the gpm package.
What versions of gpm are vulnerable to CVE-2000-0229?
Versions 1.18.1 and 1.19 of the gpm package are specifically vulnerable to CVE-2000-0229.
What are the potential consequences of CVE-2000-0229?
The vulnerability could allow local users to gain unauthorized root privileges, posing a significant security risk.