Record summary

CVE-2000-0172 has a selected CVSS score of 7.2; EIP currently links 1 catalogued exploit.

Description

The mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root privileges.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBMatt Kimball and Roger Wolff mtr 0.28/0.41 / Turbolinux 3.5 b2/4.2/4.4/6.0 - mtr (2)ExploitDB exploitby Babcia PadlinaNot analyzed1 file
ExploitDB

PoC details

References

2