CVE-2001-0439: High severity Conectiva Linux vulnerability
Published Jul 2, 2001
·Updated
licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
Affected Software
12 affected components
Conectiva Linux=4.2
Conectiva Linux=4.1
licq licq<=1.0.2
Conectiva Linux=4.0es
Conectiva Linux=5.0
Conectiva Linux=4.0
Mandrakesoft Mandrake Linux=7.2
redhat Linux=7.0
Mandrakesoft Mandrake Linux Corporate Server=1.0.1
Mandrakesoft Mandrake Linux=7.1
FreeBSD FreeBSD=3.5.1
FreeBSD FreeBSD=4.2
Remediation
Event History
Jul 2, 2001
CVE Published
04:00 AM
Sep 18, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0439?
CVE-2001-0439 is considered a high severity vulnerability due to its potential for remote command execution.
2
How do I fix CVE-2001-0439?
To fix CVE-2001-0439, you should upgrade Licq to version 1.0.3 or later.
3
Which software is affected by CVE-2001-0439?
CVE-2001-0439 affects Licq versions up to 1.0.2 and various Conectiva Linux and Mandrake Linux distributions.
4
Can CVE-2001-0439 be exploited remotely?
Yes, CVE-2001-0439 can be exploited by remote attackers through specially crafted URLs.
5
What types of attacks does CVE-2001-0439 allow?
CVE-2001-0439 allows attackers to execute arbitrary commands on the vulnerable system.