Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2001-0169

EPSS 0.14% · P34
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2001-0169

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Glibc SUID/SGID LD_PRELOAD文件覆盖漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Glibc在使用SUID或SGID程序的LD_PRELOAD环境变量时,不确认/etc/ld.so.cache和SUID/SGID的预装载库,本地用户可以利用该漏洞通过从/lib或/usr/lib加载库覆盖任意文件。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2001-0169

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2001-0169

Please Login to view more intelligence information

Same Patch Batch · n/a · 2001-05-07 · 201 CVEs total

CVE-2001-0138wu-ftpd privatepw程序漏洞
CVE-2001-0117sdiff diffutils包覆盖文件漏洞
CVE-2001-0118rdist覆盖任意文件漏洞
CVE-2001-0119getty_ps覆盖任意文件漏洞
CVE-2001-0120shadow-utils useradd命令程序覆盖任意文件漏洞
CVE-2001-0123eXtropia bbs_forum.cgi目录遍历漏洞
CVE-2001-0124Solaris exrecover缓冲区溢出漏洞
CVE-2001-0125Exmh文件覆盖漏洞
CVE-2001-0126Oracle XSQL servlet执行任意Java代码漏洞
CVE-2001-0128Zope提升特权漏洞
CVE-2001-0129Tinyproxy HTTP代理缓冲区溢出漏洞
CVE-2001-0130Lotus R5 Domino服务器 Domino ClientHTML解析器缓冲区溢出漏洞
CVE-2001-0137Windows Media Player 7恶意Java程序执行漏洞
CVE-2001-0144SSH1守护程序crc32补偿攻击检测安全漏洞
CVE-2001-0151IIS服务拒绝漏洞
CVE-2001-0150Microsoft Internet Explorer 安全漏洞
CVE-2001-0149Microsoft Internet Explorer安全漏洞
CVE-2001-0148Windows Media Player WMP ActiveX Control命令执行漏洞
CVE-2001-0147Windows 2000事件查看器snap-in缓冲区溢出漏洞
CVE-2001-0141mgetty覆盖任意文件漏洞

Showing top 20 of 201 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2001-0169

No comments yet


Leave a comment