← Back

CVE-2001-1374

nvd nist
Published: Jul 19, 2001Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd.

Affected (40)

1 product
Linux
1 product
Expect
1 product
Linux
Configuration A
39 vulnerable
Vulnerable SoftwareAffected Versions
Conectiva
Version 6.0
Version 7.0
Don Libes
Version 0
Version 1
Version 2
Version 3
Version 4
Version 5.0
Version 5.10
Version 5.11
Version 5.12
Version 5.13
Version 5.14
Version 5.15
Version 5.16
Version 5.17
Version 5.18
Version 5.19
Version 5.1
Version 5.20
Version 5.21
Version 5.22
Version 5.23
Version 5.24
Version 5.25
Version 5.26
Version 5.27
Version 5.28
Version 5.29
Version 5.2
Version 5.30
Version 5.31
Version 5.3
Version 5.4
Version 5.5
Version 5.6
Version 5.7
Version 5.8
Version 5.9
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 7.0

Timeline

No history available yet.