CVE-2000-0378
Last modified
CVE-2000-0378 is a vulnerability of currently unknown severity. The pam_console PAM module in Linux systems performs a chown on various devices upon a user login, but an open file descriptor for those devices can be maintained after the user logs out, which allows that user to sniff activity on these devices when subsequent users log in.. EPSS estimates a 1.08% chance of exploitation in the next 30 days.
Description
The pam_console PAM module in Linux systems performs a chown on various devices upon a user login, but an open file descriptor for those devices can be maintained after the user logs out, which allows that user to sniff activity on these devices when subsequent users log in.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Redhat | Linux | 6.0 |
| Redhat | Linux | 6.1 |
| Redhat | Linux | 6.2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2000-0378?
How severe is CVE-2000-0378?
How do I fix CVE-2000-0378?
Are you affected by CVE-2000-0378?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
