CVE-2000-0917: Critical severity Caldera Openlinux Ebuilder vulnerability
Published Dec 19, 2000
·Updated
Format string vulnerability in usesyslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
Affected Software
7 affected components
Caldera Openlinux Ebuilder=3.0
Trustix Secure Linux=1.1
redhat Linux=7.0
Trustix Secure Linux=1.0
Caldera OpenLinux
Caldera Openlinux Eserver=2.3
Caldera Openlinux Edesktop=2.4
Remediation
Patch Available
Event History
Dec 19, 2000
CVE Published
05:00 AM
Jan 22, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0917?
CVE-2000-0917 has a high severity rating due to its potential to allow remote attackers to execute arbitrary commands.
2
How do I fix CVE-2000-0917?
To fix CVE-2000-0917, upgrade to a patched version of LPRng that addresses the format string vulnerability.
3
What systems are affected by CVE-2000-0917?
CVE-2000-0917 affects LPRng versions 3.6.24 on various systems including Caldera OpenLinux, Trustix Secure Linux, and Red Hat Linux.
4
Can CVE-2000-0917 be exploited remotely?
Yes, CVE-2000-0917 can be exploited remotely, allowing attackers to gain control of a vulnerable system.
5
What types of attacks can occur due to CVE-2000-0917?
CVE-2000-0917 can lead to command execution attacks, where an attacker could run arbitrary commands on the affected system.