CVE-1999-0434
Published Mar 30, 1999
Last updated 16 years ago
Overview
- Description
- XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:caldera:openlinux:1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A5C77FA7-C977-4223-B6AC-91B82C45129C" }, { "criteria": "cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4" }, { "criteria": "cpe:2.3:o:debian:debian_linux:2.0:r5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D3067DBB-FBA1-48E9-9EC8-5A8D74B9F2D1" }, { "criteria": "cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3C67BDA1-9451-4026-AC6D-E912C882A757" }, { "criteria": "cpe:2.3:o:netbsd:netbsd:1.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2A8F8DE7-7A84-4350-A6D8-FCCB561D63B2" }, { "criteria": "cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4EF44364-0F57-4B74-81B0-501EA6B58501" }, { "criteria": "cpe:2.3:o:suse:suse_linux:5.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BCC94EF9-5872-402F-B2FC-06331A924BB2" } ], "operator": "OR" } ] } ]