Trustix Secure Linux vulnerabilities

65 known vulnerabilities affecting trustix/secure_linux.

Total CVEs
65
CISA KEV
0
Public exploits
21
Exploited in wild
0
Severity breakdown
CRITICAL17HIGH16MEDIUM20LOW12

Vulnerabilities

Page 4 of 4
CVE-2000-1009HIGHCVSS 7.2PoCv1.12000-12-11
CVE-2000-1009 [HIGH] CVE-2000-1009: dump in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which all dump in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program.
nvd
CVE-2000-0844CRITICALCVSS 10.0PoCv1.0v1.12000-11-14
CVE-2000-0844 [CRITICAL] CWE-264 CVE-2000-0844: Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected fo Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
nvd
CVE-2000-0867HIGHCVSS 7.2v1.12000-11-14
CVE-2000-0867 [HIGH] CVE-2000-0867: Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.
nvd
CVE-2000-0791MEDIUMCVSS 4.6v1.12000-10-20
CVE-2000-0791 [MEDIUM] CVE-2000-0791: Trustix installs the httpsd program for Apache-SSL with world-writeable permissions, which allows lo Trustix installs the httpsd program for Apache-SSL with world-writeable permissions, which allows local users to replace it with a Trojan horse.
nvd
CVE-2000-0666CRITICALCVSS 10.0PoCv1.0v1.12000-07-16
CVE-2000-0666 [CRITICAL] CVE-2000-0666: rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untruste rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges.
nvd