First published: Tue Dec 19 2000(Updated: )
Buffer overflow in xlib in XFree 3.3.x possibly allows local users to execute arbitrary commands via a long DISPLAY environment variable or a -display command line parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xfree86 Project Xlib | =3.3x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0976 is considered a critical vulnerability due to its potential to allow local users to execute arbitrary commands.
To fix CVE-2000-0976, you should upgrade to a version of XFree that is not vulnerable, ideally XFree 4.0 or later.
CVE-2000-0976 affects systems running XFree 3.3.x, particularly those that utilize vulnerable xlib components.
CVE-2000-0976 is primarily a local vulnerability and requires local access to exploit.
Exploitation of CVE-2000-0976 can allow an attacker to gain elevated privileges and execute arbitrary commands on the affected system.