CVE-1999-1468

rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:next:next:2.0:*:*:*:*:*:*:*
cpe:2.3:a:next:next:2.1:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:3.3:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:3.3.1:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:3.3.2:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:3.3.3:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:4.0:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:cray:unicos:6.0:*:*:*:*:*:*:*
cpe:2.3:o:cray:unicos:6.0e:*:*:*:*:*:*:*
cpe:2.3:o:cray:unicos:6.1:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:4.0.3:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:4.0.3c:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:4.1:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:4.1.1:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:4.1psr_a:*:*:*:*:*:*:*

History

20 Nov 2024, 23:31

Type Values Removed Values Added
References () http://www.alw.nih.gov/Security/8lgm/8lgm-Advisory-01.html - () http://www.alw.nih.gov/Security/8lgm/8lgm-Advisory-01.html -
References () http://www.cert.org/advisories/CA-91.20.rdist.vulnerability - Patch, Third Party Advisory, US Government Resource () http://www.cert.org/advisories/CA-91.20.rdist.vulnerability - Patch, Third Party Advisory, US Government Resource
References () http://www.iss.net/security_center/static/7160.php - () http://www.iss.net/security_center/static/7160.php -
References () http://www.osvdb.org/8106 - () http://www.osvdb.org/8106 -
References () http://www.securityfocus.com/bid/31 - Patch, Vendor Advisory () http://www.securityfocus.com/bid/31 - Patch, Vendor Advisory

Information

Published : 1991-10-22 04:00

Updated : 2024-11-20 23:31


NVD link : CVE-1999-1468

Mitre link : CVE-1999-1468

CVE.ORG link : CVE-1999-1468


JSON object : View

Products Affected

sun

  • sunos

sgi

  • irix

cray

  • unicos

next

  • next