CVE-ID

CVE-2000-0433

• CVSS Severity Rating • Fix Information • Vulnerable Software Versions • SCAP Mappings • CPE Information
Description
The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles.
References
Note: References are provided for the convenience of the reader to help distinguish between vulnerabilities. The list is not intended to be complete.
Assigning CNA
MITRE Corporation
Date Record Created
20000614 Disclaimer: The record creation date may reflect when the CVE ID was allocated or reserved, and does not necessarily indicate when this vulnerability was discovered, shared with the affected vendor, publicly disclosed, or updated in CVE.
Phase (Legacy)
Proposed (20000615)
Votes (Legacy)
ACCEPT(6) Baker, Cole, Frech, Levy, Ozancin, Stracener
MODIFY(1) Prosser
Comments (Legacy)
 Prosser> add source:  
   SecurityFocus
   BID1357
   SuSE Linux aaabase User Account with /tmp Home Vulnerability
   http://www.securityfocus.com/bid/1357
 CHANGE> [Levy changed vote from REVIEWING to ACCEPT]

Proposed (Legacy)
20000615
This is an record on the CVE List, which provides common identifiers for publicly known cybersecurity vulnerabilities.