CVE-2000-0362: Buffer Overflow
Buffer overflows in Linux cdwtools 093 and earlier allows local users to gain root privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Linux cdwtoolsfrom your environment.Uninstall the cdwtools package from systems where it is not required to eliminate the vulnerable binary.
- Compensating control
Restrict execution of the cdwtools binary to trusted administrative accounts (e.g., tighten filesystem permissions or use local access controls) and limit access to affected hosts until a fix or removal is applied.
- Operational
Scan SUSE Linux systems for the presence of Linux cdwtools version 093 or earlier and inventory affected hosts.
- Operational
Investigate systems where cdwtools 093 or earlier was installed for signs of local privilege escalation; if compromise is suspected, rotate affected credentials and rebuild/reimage compromised hosts.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0362?
CVE-2000-0362 is classified as a high severity vulnerability due to its exploitation allowing local users to gain root privileges.
How do I fix CVE-2000-0362?
To fix CVE-2000-0362, update the cdwtools package to version 094 or later.
What versions of Linux are affected by CVE-2000-0362?
CVE-2000-0362 affects SUSE Linux versions 6.1 and 6.2.
Who can exploit the vulnerability described in CVE-2000-0362?
Local users are able to exploit CVE-2000-0362 to gain unauthorized root access.
What type of vulnerability is CVE-2000-0362?
CVE-2000-0362 is a buffer overflow vulnerability.