← Browse

CVE-2000-0803

Medium

Elevated severity or exploit probability.

CVSS base
10.0 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS — probability of exploitation (30 days)
2.3%
82.8th percentile
CISA KEV
Not listed
Weakness / dates
—
Published 2000-12-19 · modified 2026-09-23

Description

GNU Groff uses the current working directory to find a device description file, which allows a local user to gain additional privileges by including a malicious postpro directive in the description file, which is executed when another user runs groff.

Affected

gnu

References

Official: NVD · CVE.org