CVE-2000-0791: Medium severity Trustix Secure Linux vulnerability
Published Sep 21, 2000
·Updated
Trustix installs the httpsd program for Apache-SSL with world-writeable permissions, which allows local users to replace it with a Trojan horse.
Affected Software
1 affected component
Trustix Secure Linux=1.1
Remediation
Event History
Sep 21, 2000
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0791?
CVE-2000-0791 is classified as a high severity vulnerability due to the risk of local users replacing the httpsd program with malicious code.
2
How do I fix CVE-2000-0791?
To fix CVE-2000-0791, change the permissions of the httpsd program to be writable only by the owner and not by others.
3
Which software versions are affected by CVE-2000-0791?
CVE-2000-0791 affects Trustix Secure Linux version 1.1.
4
What does CVE-2000-0791 allow malicious users to do?
CVE-2000-0791 allows local users to replace the httpsd program with a Trojan horse due to its world-writable permissions.
5
Is CVE-2000-0791 a remote or local vulnerability?
CVE-2000-0791 is a local vulnerability, as it requires local user access to exploit.