CPANSA-sperl-2000-0703: perl vulnerability
Publisher | giterlizzi | Document category | csaf_security_advisory |
---|---|---|---|
Initial release date | 2000-10-20T00:00:00 | Engine | CSAF Perl Toolkit 0.25 |
Current release date | 2000-10-20T00:00:00 | Build Date | |
Current version | 1 | Status | final |
CVSS v3.1 Base Score | Severity | ||
Original language | Language | en | |
Also referred to |
Vulnerability Description
suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" environmental variable and calling suidperl with a filename that contains the escape sequence.
Vulnerabilities
CVE-2000-0703
Vulnerability Descriptionsuidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" environmental variable and calling suidperl with a filename that contains the escape sequence.
Product status
Known affected
Product | Score | ||||||||
---|---|---|---|---|---|---|---|---|---|
perl less than 5.6.1 |
|
giterlizzi
Namespace: https://github.com/giterlizzi/
gdt@cpan.org
References
- CPANSA-sperl-2000-0703 JSON self
https://raw.githubusercontent.com/giterlizzi/perl-CPANSA-CSAF/develop/csaf/white/2000/cpansa-sperl-2000-0703.json - http://archives.neohapsis.com/archives/bugtraq/2000-08/0022.html external
http://archives.neohapsis.com/archives/bugtraq/2000-08/0022.html - http://www.calderasystems.com/support/security/advisories/CSSA-2000-026.0.txt external
http://www.calderasystems.com/support/security/advisories/CSSA-2000-026.0.txt - http://www.securityfocus.com/bid/1547 external
http://www.securityfocus.com/bid/1547 - http://www.novell.com/linux/security/advisories/suse_security_announce_59.html external
http://www.novell.com/linux/security/advisories/suse_security_announce_59.html - http://www.redhat.com/support/errata/RHSA-2000-048.html external
http://www.redhat.com/support/errata/RHSA-2000-048.html - http://www.turbolinux.com/pipermail/tl-security-announce/2000-August/000017.html external
http://www.turbolinux.com/pipermail/tl-security-announce/2000-August/000017.html - http://archives.neohapsis.com/archives/bugtraq/2000-08/0153.html external
http://archives.neohapsis.com/archives/bugtraq/2000-08/0153.html - http://archives.neohapsis.com/archives/bugtraq/2000-08/0086.html external
http://archives.neohapsis.com/archives/bugtraq/2000-08/0086.html - http://archives.neohapsis.com/archives/bugtraq/2000-08/0113.html external
http://archives.neohapsis.com/archives/bugtraq/2000-08/0113.html - https://www.cpan.org/src/5.0/sperl-2000-08-05/sperl-2000-08-05.txt external
https://www.cpan.org/src/5.0/sperl-2000-08-05/sperl-2000-08-05.txt - CVE-2000-0703 (NVD) external
https://nvd.nist.gov/vuln/detail/CVE-2000-0703
Revision history
Version | Date of the revision | Summary of the revision |
---|---|---|
1 | Fri Oct 20 00:00:00 2000 | First release |
Sharing rules
TLP:WHITE
For the TLP version see: https://www.first.org/tlp/