Unrated severityNVD Advisory· Published Jun 26, 2001· Updated Apr 16, 2026
CVE-2001-1324
CVE-2001-1324
Description
cvmlogin and statfile in Paul Jarc idtools before 2001.06.27 do not properly check the return value of a call to the pathexec_env function, which could cause the setstate utility to setuid to the UID environment variable and allow local users to gain privileges.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/2934nvdPatchVendor Advisory
- multivac.cwru.edu/idtools/admin_idtools.tar.bz2nvd
- securitytracker.com/idnvd
News mentions
0No linked articles in our index yet.