CVE-2000-0998
Medium
Elevated severity or exploit probability.
CVSS base
7.2
HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS — probability of exploitation (30 days)
0.9%
57.3th percentile
CISA KEV
Not listed
Weakness / dates
—
Published 2000-12-11 · modified 2026-09-23
Description
Format string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice" function.
Affected
References
- ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:62.top.v1.1.asc
- ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch
- http://www.securityfocus.com/bid/1895
- ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:62.top.v1.1.asc
- ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch
- http://www.securityfocus.com/bid/1895