CVE-2000-1011

FreeBSD - Buffer Overflow in catopen() via Long Environmental Variable

Title source: llm
STIX 2.1

Description

Buffer overflow in catopen() function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to gain root privileges via a long environmental variable.

References (3)

Core 3
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_freebsd
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/6070
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/5638

Scores

EPSS 0.0005
EPSS Percentile 16.6%

Details

Status published
Products (12)
freebsd/freebsd 3.0
freebsd/freebsd 3.1
freebsd/freebsd 3.2
freebsd/freebsd 3.3
freebsd/freebsd 3.4
freebsd/freebsd 3.5
freebsd/freebsd 3.5.1
freebsd/freebsd 4.0
freebsd/freebsd 4.1
freebsd/freebsd 4.1.1
... and 2 more
Published Dec 11, 2000
Tracked Since Feb 18, 2026