CVE-2001-0170
LOW 2.1EPSS 0.8%
glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.
- CVSS v2.0
- 2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N - EPSS
- 0.84% chance of exploitation in the next 30 days, 55th percentile
- Published
- 2001-05-07
- Updated
- 2024-08-08