20000527 Mandrake 7.0: /usr/bin/cdrecord gid=80 (strike #2)mailing list
http://archives.neohapsis.com/archives/bugtraq/2000-05/0367.html CVE-2000-0454
Mandriva Linux Mandrake 7.0 - Local Buffer Overflow
Record summary
CVE-2000-0454 has a selected CVSS score of 7.2; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBMandriva Linux Mandrake 7.0 - Local Buffer OverflowExploitDB exploitby noirNot analyzed1 file
References
520000603 [Gael Duval ] [Security Announce] cdrecordmailing list
http://archives.neohapsis.com/archives/bugtraq/2000-05/0434.html 20000607 Conectiva Linux Security Announcement - cdrecordmailing list
http://archives.neohapsis.com/archives/bugtraq/2000-06/0019.html 1265vdb entry
http://www.securityfocus.com/bid/1265 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2000-0454