CVE-2000-1009

dump in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program.

Date published : 2000-11-29

http://www.securityfocus.com/bid/1871

http://archives.neohapsis.com/archives/bugtraq/2000-10/0438.html