CVE-2000-0803 Information

Description

GNU Groff uses the current working directory to find a device description file which allows a local user to gain additional privileges by including a malicious postpro directive in the description file which is executed when another user runs groff.

Reference

https://exchange.xforce.ibmcloud.com/vulnerabilities/5280

Share on: