ID:10828 - Exploit for Improper privilege management in Linux kernel - CVE-2000-0506

 
Main Vulnerability Database Exploits ID:10828 - Exploit for Improper privilege management in Linux kernel - CVE-2000-0506

ID:10828 - Exploit for Improper privilege management in Linux kernel - CVE-2000-0506

Published: November 6, 2024


Vulnerability identifier: #VU99991
Vulnerability risk: Low
CVE-ID: CVE-2000-0506
CWE-ID: CWE-269
Exploitation vector: Remote access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.

The 'capabilities' feature in Linux before 2.2.16 allows local users to cause a denial of service or gain privileges by setting the capabilities to prevent a setuid program from dropping privileges, aka the 'Linux kernel setuid/setcap vulnerability.'


Remediation

Install update from vendor's repository.