7.2
CVSSv2

CVE-2000-0454

Published: 29/05/2000 Updated: 10/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

mandrakesoft mandrake linux 7.0

Exploits

source: wwwsecurityfocuscom/bid/1265/info The linux cdrecorder binary is vulnerable to a locally exploitable buffer overflow attack When installed in a Mandrake 70 linux distribution, it is by default setgid "cdburner" (which is a group, gid: 80, that is created for the application) The overflow condition is the result of no bounds che ...