PT-1998-1150 · At&T+1 · Korn Shell+1

Published

1998-04-08

·

Updated

2017-10-10

·

CVE-1999-1114

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Korn Shell (ksh) versions prior to the fixed version on IRIX 6.x and earlier
Description A buffer overflow issue in the suid exec program of Korn Shell (ksh) allows local users to gain root privileges. This issue may affect other operating systems besides IRIX 6.x and earlier.
Recommendations For Korn Shell (ksh) on IRIX 6.x and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-1999-1114

Affected Products

Irix
Korn Shell