PT-1991-1005 · Sun · Sun Source
Published
1991-05-20
·
Updated
2017-12-19
·
CVE-1999-1123
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Sun Source (sunsrc)
Description
The issue allows local users to gain root privileges through setuid root programs, specifically via (1)
makeinstall or (2) winstall.Recommendations
For Sun Source (sunsrc), consider removing setuid root permissions from
makeinstall and winstall as a temporary workaround to minimize the risk of exploitation.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sun Source