CVE Database · CVE-2000-0844
CVSS v3.1
N/A
EPSS
15.35%
Published
Nov 14, 2000
Modified
Jun 16, 2026
Public PoC / Exploit (11)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
Weaknesses (CWE)
Affected Products (74)
References (20)
...and 24 more