CVE-2000-0375: Low severity FreeBSD FreeBSD vulnerability
Published Mar 12, 2001
·Updated
The kernel in FreeBSD 3.2 follows symbolic links when it creates core dump files, which allows local attackers to modify arbitrary files.
Affected Software
1 affected component
FreeBSD FreeBSD=3.2
Event History
Mar 12, 2001
CVE Published
05:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0375?
CVE-2000-0375 is considered a high-severity vulnerability due to its potential impact on file integrity.
2
How do I fix CVE-2000-0375?
To mitigate CVE-2000-0375, upgrade to a newer version of FreeBSD that does not follow symbolic links when creating core dumps.
3
Who is affected by CVE-2000-0375?
CVE-2000-0375 affects users and administrators of FreeBSD 3.2 systems.
4
What types of attacks can CVE-2000-0375 enable?
CVE-2000-0375 can enable local attackers to manipulate arbitrary files on the system.
5
How does CVE-2000-0375 work?
CVE-2000-0375 exploits the kernel's handling of symbolic links during core dump creation, leading to unauthorized file modifications.