7.2
CVSSv2

CVE-2001-0220

Published: 02/06/2001 Updated: 05/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in ja-elvis and ko-helvis ports of elvis allow local users to gain root privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

ko-helvis ko-helvis

ja-elvis ja-elvis

Exploits

/* * ja-elvis & ko-helvis - FreeBSD 351 & 42 ports package local root exploit * * vulnerable: versions prior to ja-elvis-184_1 and ko-helvis-18h2_1 * * The above two packages contain a file recovery utility 'elvrec', installed * suid root(4755) by default The utility is subject to a buffer overflow * leading to root privileg ...