Lucene search

K
cve[email protected]CVE-2000-1220
HistoryApr 21, 2005 - 4:00 a.m.

CVE-2000-1220

2005-04-2104:00:00
web.nvd.nist.gov
32
cve-2000-1220
linux
lpd
root privileges
sendmail
lpr package
security vulnerability

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.1 High

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.3%

The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to execute with arbitrary command line arguments, as demonstrated using the -C option to specify a configuration file.

Affected configurations

NVD
Node
sgiirixMatch6.5
OR
sgiirixMatch6.5.1
OR
sgiirixMatch6.5.2
OR
sgiirixMatch6.5.3
OR
sgiirixMatch6.5.4
OR
sgiirixMatch6.5.5
OR
sgiirixMatch6.5.6
OR
sgiirixMatch6.5.7
OR
sgiirixMatch6.5.8
OR
sgiirixMatch6.5.9
OR
sgiirixMatch6.5.10
OR
sgiirixMatch6.5.11
OR
sgiirixMatch6.5.12
OR
sgiirixMatch6.5.13
OR
sgiirixMatch6.5.14f
OR
sgiirixMatch6.5.14m
OR
sgiirixMatch6.5.15f
OR
sgiirixMatch6.5.15m
OR
sgiirixMatch6.5.16f
OR
sgiirixMatch6.5.16m
OR
sgiirixMatch6.5.17f
OR
sgiirixMatch6.5.17m
OR
sgiirixMatch6.5.18f
OR
sgiirixMatch6.5.18m
Node
redhatlinuxMatch4.0
OR
redhatlinuxMatch4.1
OR
redhatlinuxMatch4.2
OR
redhatlinuxMatch5.0
OR
redhatlinuxMatch5.1
OR
redhatlinuxMatch5.2i386
OR
redhatlinuxMatch6.0
OR
redhatlinuxMatch6.1i386

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.1 High

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.3%

Related for CVE-2000-1220