CVE-1999-1210

xterm in Digital UNIX 4.0B *with* patch kit 5 allows local users to overwrite arbitrary files via a symlink attack on a core dump file, which is created when xterm is called with a DISPLAY environmental variable set to a display that xterm cannot access.
Configurations

Configuration 1 (hide)

cpe:2.3:o:digital:unix:4.0b:*:*:*:*:*:*:*

History

20 Nov 2024, 23:30

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=87936891504885&w=2 - () http://marc.info/?l=bugtraq&m=87936891504885&w=2 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/613 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/613 -

Information

Published : 1997-11-12 05:00

Updated : 2024-11-20 23:30


NVD link : CVE-1999-1210

Mitre link : CVE-1999-1210

CVE.ORG link : CVE-1999-1210


JSON object : View

Products Affected

digital

  • unix