7.2
CVSSv2

CVE-2000-0949

Published: 19/12/2000 Updated: 30/10/2018
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 740
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap overflow in savestr function in LBNL traceroute 1.4a5 and previous versions allows a local user to execute arbitrary commands via the -g option.

Vulnerable Product Search on Vulmon Subscribe to Product

lbl lbl traceroute 1.4a5

sun sunos 5.5.1

Exploits

source: wwwsecurityfocuscom/bid/1739/info Traceroute is a well-known network diagnostic tool used for analyzing the path on a network between two hosts On unix systems, traceroute is typically installed setuid root because of its use of raw sockets Certain versions of LBNL traceroute are vulnerable to an interesting attack involving fr ...
source: wwwsecurityfocuscom/bid/1739/info Traceroute is a well-known network diagnostic tool used for analyzing the path on a network between two hosts On unix systems, traceroute is typically installed setuid root because of its use of raw sockets Certain versions of LBNL traceroute are vulnerable to an interesting attack involving fre ...
/* * MasterSecuritY <wwwmastersecurityfr> * * openwallc - Local root exploit in LBNL traceroute * Copyright (C) 2000 Michel "MaXX" Kaempf <maxx@mastersecurityfr> * * Updated versions of this exploit and the corresponding advisory will * be made available at: * * ftp://maxxviaecpfr/traceroot/ * * This program is free s ...
source: wwwsecurityfocuscom/bid/1739/info Traceroute is a well-known network diagnostic tool used for analyzing the path on a network between two hosts On unix systems, traceroute is typically installed setuid root because of its use of raw sockets Certain versions of LBNL traceroute are vulnerable to an interesting attack involving f ...