CVE-2000-0959: Low severity GNU glibc vulnerability
glibc2 does not properly clear the LDDEBUGOUTPUT and LDDEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0959?
CVE-2000-0959 is considered a moderate severity vulnerability because it enables local users to exploit setuid programs for file overwriting through a symlink attack.
How do I fix CVE-2000-0959?
To fix CVE-2000-0959, update glibc to the latest version where this vulnerability has been addressed.
Who is affected by CVE-2000-0959?
CVE-2000-0959 affects systems running glibc version 2.1.3.10, particularly those with setuid programs.
What is the impact of exploiting CVE-2000-0959?
Exploiting CVE-2000-0959 can lead to unauthorized file manipulation, allowing local users to overwrite files.
Is CVE-2000-0959 a remote vulnerability?
No, CVE-2000-0959 is classified as a local vulnerability requiring physical or system access to exploit.