PT-1998-1134 · Novell+1 · Netware Client+1
Published
1998-04-08
·
Updated
2016-10-18
·
CVE-1999-1040
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
NetWare Client version 1.0 on IRIX versions 6.3 and 6.4
Description
The issue allows local users to gain root access through a modified IFS environmental variable, specifically in the ipxchk and ipxlink components.
Recommendations
For NetWare Client version 1.0 on IRIX versions 6.3 and 6.4, consider restricting access to the ipxchk and ipxlink components to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Irix
Netware Client