Some functions that implement the locale subsystem on Unix do not  properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2000-11-14 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2000-0844
Mitre link : CVE-2000-0844
CVE.ORG link : CVE-2000-0844
JSON object : View
Products Affected
                caldera
- openlinux
- openlinux_ebuilder
- openlinux_eserver
sun
- sunos
- solaris
suse
- suse_linux
debian
- debian_linux
sgi
- irix
turbolinux
- turbolinux
mandrakesoft
- mandrake_linux
redhat
- linux
slackware
- slackware_linux
ibm
- aix
trustix
- secure_linux
conectiva
- linux
immunix
- immunix
CWE
                
                    
                        
                        CWE-264
                        
            Permissions, Privileges, and Access Controls
