PT-1999-1582 · Ibm · Aix

Publicado

1999-12-31

·

Atualizado

2017-10-10

·

CVE-1999-1117

CVSS v2.0

2.1

Baixa

VetorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions AIX versions 4.1 through 4.2
Description The issue allows local users to read arbitrary files. This is achieved by specifying the file in the -h command line parameter of the lquerypv command.
Recommendations For AIX versions 4.1 and 4.2, consider restricting access to the lquerypv command until a fix is available. As a temporary workaround, avoid using the -h command line parameter with the lquerypv command to minimize the risk of exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-1999-1117

Produtos afetados

Aix