CVE-2000-0118

Published: 1999-06-09

Description

The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to conduct brute force password guessing.

Severity

Overall Severity: N/A

CVSS Metrics

Type Score Severity Vector

Affected Products

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

redhat - linux

Affected Versions:

sun - solaris

Affected Versions:

sun - solaris

Affected Versions:

sun - solaris

Affected Versions:

sun - solaris

Affected Versions:

sun - sunos

Affected Versions:

sun - sunos

Affected Versions:

sun - sunos

Affected Versions:

sun - sunos

Affected Versions:

sun - sunos

Affected Versions:

sun - sunos

Affected Versions:

sun - sunos

Affected Versions:

sun - sunos

Affected Versions:

sun - sunos

Affected Versions:

References

Neural Processor Active