CVE-2000-1213Iputils vulnerability

6 documents6 sources
Severity
7.5HIGHNVD
EPSS
0.5%
top 32.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 18
Latest updateApr 30

Description

ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, does not drop privileges after acquiring a raw socket, which increases ping's exposure to bugs that otherwise would occur at lower privileges.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages3 packages

NVDiputils/iputils2000-10-10
NVDredhat/linux6.2, 7.0+1

🔴Vulnerability Details

2
GHSA
GHSA-gvg8-m7rh-qfg2: ping in iputils before 20001010, as distributed on Red Hat Linux 62022-04-30
CVEList
CVE-2000-1213: ping in iputils before 20001010, as distributed on Red Hat Linux 62002-08-31

💥Exploits & PoCs

1
Exploit-DB
Computalynx CProxy Server 3.3 SP2 - Buffer Overflow (Denial of Service) (PoC)2000-05-16

📋Vendor Advisories

1
Red Hat
security flaw2000-10-18

💬Community

1
Bugzilla
CVE-2000-1213 security flaw2018-08-16
CVE-2000-1213 — Iputils vulnerability | cvebase