Vulnerability Description
ROOT version 6.9.03 and below is vulnerable to an authenticated shell metacharacter injection in the rootd daemon resulting in remote code execution
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cern | Root | <= 6.9.03 |
Related Weaknesses (CWE)
References
- https://github.com/root-project/root/commit/88ccff152604e0f1012653a596d802ff7edePatchVendor Advisory
- https://github.com/root-project/root/commit/88ccff152604e0f1012653a596d802ff7edePatchVendor Advisory
FAQ
What is CVE-2017-1000203?
CVE-2017-1000203 is a vulnerability with a CVSS score of 8.8 (HIGH). ROOT version 6.9.03 and below is vulnerable to an authenticated shell metacharacter injection in the rootd daemon resulting in remote code execution
How severe is CVE-2017-1000203?
CVE-2017-1000203 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-1000203?
Check the references section above for vendor advisories and patch information. Affected products include: Cern Root.