Lucene search

K
cveMitreCVE-2000-1010
HistoryJan 22, 2001 - 5:00 a.m.

CVE-2000-1010

2001-01-2205:00:00
mitre
web.nvd.nist.gov
21
openbsd
talkd
format string vulnerability
remote attack
arbitrary commands
cve-2000-1010.

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

High

EPSS

0.005

Percentile

77.4%

Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters.

Affected configurations

Nvd
Node
openbsdopenbsdMatch2.3
OR
openbsdopenbsdMatch2.4
OR
openbsdopenbsdMatch2.5
OR
openbsdopenbsdMatch2.6
OR
openbsdopenbsdMatch2.7
OR
redhatlinuxMatch5.0
OR
redhatlinuxMatch5.1
OR
redhatlinuxMatch5.2alpha
OR
redhatlinuxMatch5.2i386
OR
redhatlinuxMatch5.2sparc
VendorProductVersionCPE
openbsdopenbsd2.3cpe:2.3:o:openbsd:openbsd:2.3:*:*:*:*:*:*:*
openbsdopenbsd2.4cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*
openbsdopenbsd2.5cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*
openbsdopenbsd2.6cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*
openbsdopenbsd2.7cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*
redhatlinux5.0cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*
redhatlinux5.1cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*
redhatlinux5.2cpe:2.3:o:redhat:linux:5.2:*:alpha:*:*:*:*:*
redhatlinux5.2cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*
redhatlinux5.2cpe:2.3:o:redhat:linux:5.2:*:sparc:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

High

EPSS

0.005

Percentile

77.4%

Related for CVE-2000-1010