PT-1997-1124 · Sun Microsystems+1 · Sunos+1

Publicado

1997-02-05

·

Atualizado

2008-09-09

·

CVE-1999-0298

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions ypbind versions (affected versions not specified)
Description The issue allows local and remote attackers to overwrite files via a .. (dot dot) attack when the -ypset and -ypsetme options are activated in Linux Slackware and SunOS.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-1999-0298

Produtos afetados

Slackware Linux
Sunos