CVE-2000-1043

critical

Description

Format string vulnerability in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/5731

http://www.linux-mandrake.com/en/security/MDKSA-2000-064.php3?dis=7.1

Details

Source: Mitre, NVD

Published: 2000-12-11

Updated: 2017-10-10

Risk Information

CVSS v2

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Severity: Critical

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical