CVE-2000-0948: High severity Gnome Gnorpm vulnerability
Published Dec 19, 2000
·Updated
GnoRPM before 0.95 allows local users to modify arbitrary files via a symlink attack.
Affected Software
1 affected component
Gnome Gnorpm<=0.94
Remediation
Patch Available
Event History
Dec 19, 2000
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Jan 22, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0948?
CVE-2000-0948 is considered a local privilege escalation vulnerability.
2
How do I fix CVE-2000-0948?
To fix CVE-2000-0948, update GnoRPM to version 0.95 or later.
3
What versions are affected by CVE-2000-0948?
GnoRPM versions before 0.95, including 0.94 and earlier, are affected by CVE-2000-0948.
4
Can CVE-2000-0948 be exploited remotely?
CVE-2000-0948 cannot be exploited remotely as it requires local user access.
5
Who is impacted by CVE-2000-0948?
Local users on systems running affected versions of GnoRPM are impacted by CVE-2000-0948.