Vulnerabilities > CVE-2000-0052

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
mandrakesoft
redhat
turbolinux
exploit available

Summary

Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack.

Exploit-Db

  • descriptionMandrake 6.0/6.1,RedHat 6.0/6.1,Turbolinux 3.5 b2/4.2/4.4/6.0.2 userhelper/PAM Path Vulnerability (2). CVE-2000-0052. Local exploit for linux platform
    idEDB-ID:19710
    last seen2016-02-02
    modified2000-03-15
    published2000-03-15
    reporterElias Levy
    sourcehttps://www.exploit-db.com/download/19710/
    titleMandrake 6.x / RedHat 6.x / Turbolinux 3.5 b2/4.x/6.0.2 userhelper/PAM - Path Vulnerability 2
  • descriptionMandrake 6.0/6.1,RedHat 6.0/6.1,Turbolinux 3.5 b2/4.2/4.4/6.0.2 userhelper/PAM Path Vulnerability. CVE-2000-0052. Local exploit for linux platform
    idEDB-ID:19709
    last seen2016-02-02
    modified2000-01-04
    published2000-01-04
    reporterdildog
    sourcehttps://www.exploit-db.com/download/19709/
    titleMandrake 6.x / RedHat 6.x / Turbolinux 3.5 b2/4.x/6.0.2 userhelper/PAM - Path Vulnerability 1

Redhat

advisories
rhsa
idRHSA-2000:001