CVE

Id
2670  
CVE No.
CVE-2000-1103  
Status
Candidate  
Description
rcvtty in BSD 3.0 and 4.0 does not properly drop privileges before executing a script, which allows local attackers to gain privileges by specifying an alternate Trojan horse script on the command line.  
Phase
Proposed (20001219)  
Votes
ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Wall  
Comments
Frech> XF:rcvtty-elevate-privileges(5587)