Unrated severityNVD Advisory· Published Oct 20, 2000· Updated Apr 16, 2026
CVE-2000-0763
CVE-2000-0763
Description
xlockmore and xlockf do not properly cleanse user-injected format strings, which allows local users to gain root privileges via the -d option.
Affected products
2cpe:2.3:a:david_bagley:xlock:4.16:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:david_bagley:xlock:4.16:*:*:*:*:*:*:*
- cpe:2.3:a:david_bagley:xlock:4.16.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- archives.neohapsis.com/archives/freebsd/2000-08/0340.htmlnvdPatchVendor Advisory
- www.debian.org/security/2000/20000816nvdPatchVendor Advisory
- www.securityfocus.com/bid/1585nvdExploitPatchVendor Advisory
- archives.neohapsis.com/archives/bugtraq/2000-08/0212.htmlnvd
- archives.neohapsis.com/archives/bugtraq/2000-08/0294.htmlnvd
- www.securityfocus.com/templates/archive.pikenvd
News mentions
0No linked articles in our index yet.