CVE-2000-0803EPSS p82.9%

CVE-2000-0803CVE-2000-0803

gnu / groff

Description

GNU Groff uses the current working directory to find a device description file, which allows a local user to gain additional privileges by including a malicious postpro directive in the description file, which is executed when another user runs groff.

Scoring

CVSS 10.0 ()
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS2.33% probability of exploitation · percentile 82.9% · 2026-10-05T12:00:23Z
Last modified2026-09-23
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.