VULNERABILITY INTELLIGENCE

CVE-2000-1010

CVSS score10 HIGH
EPSS probability4.56%
CISA KEVNot currently listed
Published2000-12-11
Last modified2026-06-16
CVSS vectorAV:N/AC:L/Au:N/C:C/I:C/A:C

Description

Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters.

Primary references