CVE-1999-1102

lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times.
Configurations

Configuration 1 (hide)

cpe:2.3:o:sgi:irix:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:apple:a_ux:2.0.1:*:*:*:*:*:*:*
cpe:2.3:o:bsd:bsd:4.3:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:30

Type Values Removed Values Added
References () http://ciac.llnl.gov/ciac/bulletins/e-25.shtml - Patch, Vendor Advisory () http://ciac.llnl.gov/ciac/bulletins/e-25.shtml - Patch, Vendor Advisory
References () http://www.aenigma.net/resources/maillist/bugtraq/1994/0091.htm - () http://www.aenigma.net/resources/maillist/bugtraq/1994/0091.htm -
References () http://www.phreak.org/archives/security/8lgm/8lgm.lpr - Exploit, Vendor Advisory () http://www.phreak.org/archives/security/8lgm/8lgm.lpr - Exploit, Vendor Advisory

Information

Published : 1999-12-31 05:00

Updated : 2024-11-20 23:30


NVD link : CVE-1999-1102

Mitre link : CVE-1999-1102

CVE.ORG link : CVE-1999-1102


JSON object : View

Products Affected

sun

  • sunos

sgi

  • irix

bsd

  • bsd

apple

  • a_ux