CVE-2000-0844: security flaw

Severity: Critical

CVSS Score: 10

Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.