Unrated severityNVD Advisory· Published Jul 19, 2001· Updated Apr 16, 2026
CVE-2001-1374
CVE-2001-1374
Description
expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd.
Affected products
40cpe:2.3:a:don_libes:expect:0:*:*:*:*:*:*:*+ 36 more
- cpe:2.3:a:don_libes:expect:0:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:1:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:2:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:3:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:4:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.0:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.1:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.10:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.11:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.12:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.13:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.14:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.15:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.16:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.17:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.18:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.19:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.2:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.20:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.21:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.22:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.23:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.24:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.25:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.26:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.27:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.28:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.29:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.3:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.30:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.31:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.4:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.5:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.6:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.7:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.8:*:*:*:*:*:*:*
- cpe:2.3:a:don_libes:expect:5.9:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.securityfocus.com/bid/3074nvdPatchVendor Advisory
- distro.conectiva.com.br/atualizacoes/nvd
- www.mandrakesoft.com/security/advisoriesnvd
- www.redhat.com/support/errata/RHSA-2002-148.htmlnvd
- bugzilla.redhat.com/bugzilla/show_bug.cginvd
- bugzilla.redhat.com/bugzilla/show_bug.cginvd
- exchange.xforce.ibmcloud.com/vulnerabilities/6870nvd
News mentions
0No linked articles in our index yet.