CVE-2000-0917

LPRng 3.6.24 - RCE

Title source: llm

Description

Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.

Exploits (5)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotelinux
https://www.exploit-db.com/exploits/16842
exploitdb WORKING POC VERIFIED
by VeNoMouS · cremotelinux
https://www.exploit-db.com/exploits/230
exploitdb WORKING POC VERIFIED
by sk8 · cremotelinux
https://www.exploit-db.com/exploits/226
exploitdb WORKING POC VERIFIED
by DiGiT · cremotelinux
https://www.exploit-db.com/exploits/227
metasploit WORKING POC NORMAL
by jduck · rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/misc/lprng_format_string.rb

Scores

EPSS 0.8609
EPSS Percentile 99.4%

Details

Status published
Products (7)
caldera/openlinux
caldera/openlinux_ebuilder 3.0
caldera/openlinux_edesktop 2.4
caldera/openlinux_eserver 2.3
redhat/linux 7.0
trustix/secure_linux 1.0
trustix/secure_linux 1.1
Published Dec 19, 2000
Tracked Since Feb 18, 2026