First published: Wed May 24 2000(Updated: )
Qpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is processed by the euidl command.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm Qpopper | =2.52 | |
Qualcomm Qpopper | =2.53 | |
Sun Cobalt RaQ | ||
Sun Cobalt RaQ |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0442 is classified as a high severity vulnerability due to its potential for privilege escalation.
To fix CVE-2000-0442, it is recommended to upgrade to a version of Qpopper later than 2.53.
CVE-2000-0442 affects Qpopper versions 2.52 and earlier, as well as specific Sun Cobalt RaQ systems.
CVE-2000-0442 primarily affects local users who have access to the vulnerable Qpopper installations.
CVE-2000-0442 allows local users to execute arbitrary code with elevated privileges, which can compromise system integrity.