VYPR
Unrated severityNVD Advisory· Published May 3, 2000· Updated Apr 16, 2026

CVE-2000-0378

CVE-2000-0378

Description

The pam_console PAM module in Linux systems performs a chown on various devices upon a user login, but an open file descriptor for those devices can be maintained after the user logs out, which allows that user to sniff activity on these devices when subsequent users log in.

Affected products

3
  • Red Hat/Linux3 versions
    cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.