CVE-2000-1074

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/12/2000
Last modified:
03/04/2025

Description

csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to gain root privileges by creating a Trojan Horse library in the current or parent directory.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:netscape:iplanet_ical:2.1:patch2:*:*:*:*:*:*