Vulnerability Details CVE-2000-0172
The mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 36.5%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2000-0172
-
cpe:2.3:a:matt_kimball_and_roger_wolff:mtr:0.28
-
cpe:2.3:a:matt_kimball_and_roger_wolff:mtr:0.41
-
cpe:2.3:o:turbolinux:turbolinux:3.5b2
-
cpe:2.3:o:turbolinux:turbolinux:4.2
-
cpe:2.3:o:turbolinux:turbolinux:4.4
-
cpe:2.3:o:turbolinux:turbolinux:6.0.2