CVE-2001-0873

uuxqt in Taylor UUCP package does not properly remove dangerous long options, which allows local users to gain privileges by calling uux and specifying an alternate configuration file with the --config option.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ian_lance_taylor:taylor_uucp:1.0.6:*:*:*:*:*:*:*

History

20 Nov 2024, 23:36

Type Values Removed Values Added
References () http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000425 - Patch, Vendor Advisory () http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000425 - Patch, Vendor Advisory
References () http://marc.info/?l=bugtraq&m=100715446131820 - () http://marc.info/?l=bugtraq&m=100715446131820 -
References () http://rhn.redhat.com/errata/RHSA-2001-165.html - () http://rhn.redhat.com/errata/RHSA-2001-165.html -
References () http://www.calderasystems.com/support/security/advisories/CSSA-2001-033.0.txt - Patch, Vendor Advisory () http://www.calderasystems.com/support/security/advisories/CSSA-2001-033.0.txt - Patch, Vendor Advisory
References () http://www.debian.org/security/2001/dsa-079 - () http://www.debian.org/security/2001/dsa-079 -
References () http://www.novell.com/linux/security/advisories/2001_038_uucp_txt.html - () http://www.novell.com/linux/security/advisories/2001_038_uucp_txt.html -
References () http://www.securityfocus.com/archive/1/212892 - Exploit, Vendor Advisory () http://www.securityfocus.com/archive/1/212892 - Exploit, Vendor Advisory
References () http://www.securityfocus.com/bid/3312 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/3312 - Exploit, Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/7099 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/7099 -

Information

Published : 2001-12-21 05:00

Updated : 2025-04-03 01:03


NVD link : CVE-2001-0873

Mitre link : CVE-2001-0873

CVE.ORG link : CVE-2001-0873


JSON object : View

Products Affected

ian_lance_taylor

  • taylor_uucp