CVE-2003-0645

man-db <2.4.1 - Privilege Escalation

Title source: llm

Description

man-db 2.3.12 and 2.3.18 to 2.4.1 uses certain user-controlled DEFINE directives from the ~/.manpath file, even when running setuid, which could allow local users to gain privileges.

Exploits (1)

exploitdb WORKING POC VERIFIED
by vade79 · bashlocallinux
https://www.exploit-db.com/exploits/75

Scores

EPSS 0.0016
EPSS Percentile 36.3%

Details

Status published
Products (2)
andries_brouwer/man 2.3.20
andries_brouwer/man 2.4.1
Published Aug 27, 2003
Tracked Since Feb 18, 2026