Unrated severityNVD Advisory· Published Oct 20, 2000· Updated Jun 16, 2026
CVE-2000-0748
CVE-2000-0748
Description
OpenLDAP 1.2.11 and earlier improperly installs the ud binary with group write permissions, which could allow any user in that group to replace the binary with a Trojan horse.
Affected products
6cpe:2.3:a:openldap:openldap:1.2.10:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:openldap:openldap:1.2.10:*:*:*:*:*:*:*
- cpe:2.3:a:openldap:openldap:1.2.11:*:*:*:*:*:*:*
- cpe:2.3:a:openldap:openldap:1.2.7:*:*:*:*:*:*:*
- cpe:2.3:a:openldap:openldap:1.2.8:*:*:*:*:*:*:*
- cpe:2.3:a:openldap:openldap:1.2.9:*:*:*:*:*:*:*
- (no CPE)range: <=1.2.11
Patches
Vulnerability mechanics
References
2- archives.neohapsis.com/archives/bugtraq/2000-07/0375.htmlnvdPatchVendor Advisory
- www.securityfocus.com/bid/1511nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.