Vulnerabilities (CVE)

Filtered by vendor Gnu Subscribe
Filtered by product Userv
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0786 1 Gnu 1 Userv 2023-12-10 4.6 MEDIUM N/A
GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions.