CVE Vulnerabilities

CVE-2000-1012

Published: Dec 11, 2000 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The catopen function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable.

Affected Software

NameVendorStart VersionEnd Version
FreebsdFreebsd3.0 (including)3.0 (including)
FreebsdFreebsd3.1 (including)3.1 (including)
FreebsdFreebsd3.2 (including)3.2 (including)
FreebsdFreebsd3.3 (including)3.3 (including)
FreebsdFreebsd3.4 (including)3.4 (including)
FreebsdFreebsd3.5 (including)3.5 (including)
FreebsdFreebsd3.5.1 (including)3.5.1 (including)
FreebsdFreebsd4.0 (including)4.0 (including)
FreebsdFreebsd4.1 (including)4.1 (including)
FreebsdFreebsd4.1.1 (including)4.1.1 (including)
FreebsdFreebsd4.2 (including)4.2 (including)
FreebsdFreebsd5.0 (including)5.0 (including)

References