ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a .. (dot dot) attack.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:28
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.nai.com/nai_labs/asp_set/advisory/06_ypbindsetme_adv.aspĀ - |
Information
Published : 1997-02-05 05:00
Updated : 2024-11-20 23:28
NVD link : CVE-1999-0298
Mitre link : CVE-1999-0298
CVE.ORG link : CVE-1999-0298
JSON object : View
Products Affected
sun
- sunos
slackware
- slackware_linux
CWE