Back to Database
Status published
Critical
CVE-2000-0666
rpc.statd in the nfs-utils package in various Linux distributions does...
Vulnerability Description
rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2000-0666
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.redhat.com/support/errata/RHSA-2000-043.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0206.html
- http://www.securityfocus.com/bid/1480
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0230.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0236.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/4939
- http://www.calderasystems.com/support/security/advisories/CSSA-2000-025.0.txt
- http://www.cert.org/advisories/CA-2000-17.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0260.html
More from conectiva
View All →CVE-2005-0750
The bluez_sock_create function in the Bluetooth stack for Linux kernel...
High
7.2
CVE-2005-0736
Integer overflow in sys_epoll_wait in eventpoll.c for Linux kernel 2.6...
Low
2.1
CVE-2005-0207
Unknown vulnerability in Linux kernel 2.4.x, 2.5.x, and 2.6.x allows...
Low
2.1
CVE-2004-0626
The tcp_find_option function of the netfilter subsystem in Linux kernel...
Medium
5
CVE-2001-1375
tcl/tk package (tcltk) 8.3.1 searches for its libraries in the...
Medium
4.6
Affected Vendor
conectiva
View all reports →Affected Software
linux, debian linux, suse linux, secure linux
Vulnerable Versions:
4.0, 4.0es, 4.1, 4.2, 5.0, 5.1, 2.2, 2.3, 6.0, 6.1, 6.2, 6.3, 6.4, 7.0, 1.0, 1.1
Timeline
Official Publish:
October 13th, 2000
Last Modified:
August 8th, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.