Vulnerabilities > CVE-2000-0867

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE

Summary

Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.

Nessus

NASL familyMandriva Local Security Checks
NASL idMANDRAKE_MDKSA-2000-050.NASL
descriptionA problem exists with the kernel logging daemon (klogd) in the sysklogd package. A
last seen2020-06-01
modified2020-06-02
plugin id61840
published2012-09-06
reporterThis script is Copyright (C) 2012-2019 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/61840
titleMandrake Linux Security Advisory : sysklogd (MDKSA-2000:050-1)

Redhat

advisories
rhsa
idRHSA-2000:061