CVE
- Id
- 2670
- CVE No.
- CVE-2000-1103
- Status
- Candidate
- Description
- rcvtty in BSD 3.0 and 4.0 does not properly drop privileges before executing a script, which allows local attackers to gain privileges by specifying an alternate Trojan horse script on the command line.
- Phase
- Proposed (20001219)
- Votes
- ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Wall
- Comments
- Frech> XF:rcvtty-elevate-privileges(5587)