CVE-2000-0566: High severity redhat Linux vulnerability
Published Jul 3, 2000
·Updated
makewhatis in Linux man package allows local users to overwrite files via a symlink attack.
Affected Software
18 affected components
redhat Linux=6.1
redhat Linux=5.2
redhat Linux=6.2
redhat Linux=5.2
Mandrakesoft Mandrake Linux=7.0
redhat Linux=6.0
redhat Linux=6.1
Caldera OpenLinux=2.4
redhat Linux=5.2
redhat Linux=6.0
Mandrakesoft Mandrake Linux=7.1
Mandrakesoft Mandrake Linux=6.0
redhat Linux=6.2
redhat Linux=6.0
redhat Linux=6.1
redhat Linux=6.2
Mandrakesoft Mandrake Linux=6.1
Caldera OpenLinux=2.3
Event History
Jul 3, 2000
CVE Published
04:00 AM
Oct 13, 2000
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0566?
The severity of CVE-2000-0566 is classified as a medium risk due to its ability to allow local users to overwrite files.
2
How do I fix CVE-2000-0566?
To fix CVE-2000-0566, ensure that the affected version of the makewhatis script is updated to a secure version or apply appropriate permissions to prevent symlink attacks.
3
Which systems are affected by CVE-2000-0566?
CVE-2000-0566 affects various versions of Red Hat Linux and Mandrake Linux, specifically those versions mentioned in the vulnerability details.
4
What type of attack does CVE-2000-0566 involve?
CVE-2000-0566 involves a symlink attack that allows local users to overwrite files.
5
Is CVE-2000-0566 still a concern in modern systems?
CVE-2000-0566 is largely considered a legacy concern, but systems running outdated software may still be vulnerable.