CVE-2000-0963: Buffer Overflow
Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFODIRS.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0963?
CVE-2000-0963 is considered to have a medium severity as it allows local users to execute arbitrary commands due to a buffer overflow in the ncurses library.
How do I fix CVE-2000-0963?
To fix CVE-2000-0963, update the ncurses library to a version that is not affected, specifically versions higher than 5.6.
Which systems are affected by CVE-2000-0963?
CVE-2000-0963 affects various systems including Immunix 6.2, Red Hat Linux versions 6.2 and 7.0, and certain FreeBSD versions such as 3.4 and 4.1.
What kind of attacks can CVE-2000-0963 enable?
CVE-2000-0963 can enable local users to execute arbitrary commands, potentially compromising the system's integrity.
Is CVE-2000-0963 still a concern in modern environments?
While CVE-2000-0963 originates from older software, it remains a concern for any systems still using vulnerable versions of the ncurses library.