CVE-2000-0595: Medium severity FreeBSD FreeBSD vulnerability
Published Jul 5, 2000
·Updated
libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in another directory.
Affected Software
6 affected components
FreeBSD FreeBSD=3.1
FreeBSD FreeBSD=3.0
FreeBSD FreeBSD=3.2
FreeBSD FreeBSD=3.3
FreeBSD FreeBSD=4.0
FreeBSD FreeBSD=3.4
Remediation
Patch Available
Event History
Jul 5, 2000
CVE Published
04:00 AM
Oct 13, 2000
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0595?
CVE-2000-0595 is classified as a local privilege escalation vulnerability.
2
How do I fix CVE-2000-0595?
To fix CVE-2000-0595, ensure that .editrc files are only allowed in the user's home directory and prevent unauthorized access to other directories.
3
Who is affected by CVE-2000-0595?
CVE-2000-0595 affects local users of FreeBSD versions 3.0 through 4.0.
4
What potential impact does CVE-2000-0595 have?
CVE-2000-0595 allows local users to execute arbitrary commands, leading to potential system compromise.
5
Is CVE-2000-0595 a remote access vulnerability?
No, CVE-2000-0595 is not a remote access vulnerability; it requires local access to exploit.