Vulnerabilities > CVE-2001-0170
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 9 | |
OS | 1 | |
OS | 2 | |
Application | 1 |
Exploit-Db
description glibc-2.2 and openssh-2.3.0p1 exploits glibc >= 2.1.9x. CVE-2001-0170. Local exploit for linux platform id EDB-ID:258 last seen 2016-01-31 modified 2001-01-25 published 2001-01-25 reporter krochos source https://www.exploit-db.com/download/258/ title glibc-2.2 and openssh-2.3.0p1 Exploits glibc <= 2.1.9x description Resolv+ (RESOLV_HOST_CONF) Linux Library Local Exploit. CVE-2001-0170. Local exploit for linux platform id EDB-ID:317 last seen 2016-01-31 modified 1996-01-01 published 1996-01-01 reporter Jared Mauch source https://www.exploit-db.com/download/317/ title Resolv+ RESOLV_HOST_CONF - Linux Library Local Exploit
Redhat
advisories |
|