CVE-2001-1036

GNU locate in findutils 4.1 on Slackware 7.1 and 8.0 allows local users to gain privileges via an old formatted filename database (locatedb) that contains an entry with an out-of-range offset, which causes locate to write to arbitrary process memory.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gnu:findutils:4.0:*:*:*:*:*:*:*
cpe:2.3:a:gnu:findutils:4.1:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:slackware:slackware_linux:7.1:*:*:*:*:*:*:*
cpe:2.3:o:slackware:slackware_linux:8.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2001-08-31 04:00

Updated : 2023-12-10 10:17


NVD link : CVE-2001-1036

Mitre link : CVE-2001-1036

CVE.ORG link : CVE-2001-1036


JSON object : View

Products Affected

gnu

  • findutils

slackware

  • slackware_linux