Loading...
Loading...
Star before 1.5_alpha46 does not drop the effective user ID (euid) before calling external programs, which could allow local users to gain privileges by modifying the RSH environment variable to reference a malicious program.
December 23, 2004
April 16, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2004-0850
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.