Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2000-0949Traceroute vulnerability

9 documents6 sources
Severity
7.2HIGHNVD
EPSS
0.2%
top 58.87%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedDec 19
Latest updateApr 30

Description

Heap overflow in savestr function in LBNL traceroute 1.4a5 and earlier allows a local user to execute arbitrary commands via the -g option.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages2 packages

NVDsun/sunos5.5.1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-qw66-x6vv-xrg3: Heap overflow in savestr function in LBNL traceroute 12022-04-30
CVEList
CVE-2000-0949: Heap overflow in savestr function in LBNL traceroute 12001-01-22

💥Exploits & PoCs

4
Exploit-DB
LBL Traceroute - Local Privilege Escalation2000-11-15
Exploit-DB
LBL Traceroute 1.4 a5 - Heap Corruption (1)2000-09-28
Exploit-DB
LBL Traceroute 1.4 a5 - Heap Corruption (2)2000-09-28
Exploit-DB
LBL Traceroute 1.4 a5 - Heap Corruption (3)2000-09-28

📋Vendor Advisories

1
Red Hat
security flaw2000-09-28

💬Community

1
Bugzilla
CVE-2000-0949 security flaw2018-08-16
CVE-2000-0949 — LBL Traceroute vulnerability | cvebase