First published: Wed Nov 29 2000(Updated: )
Format string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice" function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD Kernel | =3.5-stable | |
FreeBSD Kernel | =3.5.1 | |
FreeBSD Kernel | =4.1 | |
FreeBSD Kernel | =3.5.1-stable | |
FreeBSD Kernel | =4.0 | |
FreeBSD Kernel | =4.1.1 | |
FreeBSD Kernel | =3.5 | |
FreeBSD Kernel | =3.5.1-release | |
FreeBSD Kernel | =4.0-alpha |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0998 is considered a high severity vulnerability due to its potential to grant local attackers root privileges.
To fix CVE-2000-0998, update to a version of FreeBSD that is not affected by this vulnerability.
CVE-2000-0998 affects various versions of the FreeBSD operating system, including versions 3.5, 3.5.1, 4.0, and 4.1.
No, CVE-2000-0998 requires local access to the system for exploitation.
Failure to address CVE-2000-0998 can lead to unauthorized access and control of the system by local attackers.