Skip to content
Noroxi

cdrtools records

4 published records for vendor cdrtools.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      4 records
      • CVE-2004-0806
        29Monitor

        cdrecord in the cdrtools package before 2.01, when installed setuid root, does not properly drop privileges before executing a program speci

        HighCVSS 7.2Proof of conceptEPSS 2%

        cdrtools · cdrecordDec 31, 2004

      • CVE-2003-0289
        28Monitor

        Format string vulnerability in scsiopen.c of the cdrecord program in cdrtools 2.0 allows local users to gain privileges via format string sp

        HighCVSS 7.2Proof of conceptEPSS 1%

        cdrtools · cdrecordJun 16, 2003

      • CVE-2003-0655
        28Monitor

        rscsi in cdrtools 2.01 and earlier allows local users to overwrite arbitrary files and gain root privileges by specifying the target file as

        HighCVSS 7.2Proof of conceptEPSS 1%

        cdrtools · cdrtoolsAug 27, 2003

      • cdrecord before 4:2.0, when DEBUG is enabled, allows local users to overwrite arbitrary files via a symlink attack on temporary files.

        LowCVSS 2.1No exploitEPSS 0%

        cdrtools · cdrecordMay 2, 2005