PT-1999-1582 · Ibm · Aix

Published

1999-12-31

·

Updated

2017-10-10

·

CVE-1999-1117

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions AIX versions 4.1 through 4.2
Description The issue allows local users to read arbitrary files. This is achieved by specifying the file in the -h command line parameter of the lquerypv command.
Recommendations For AIX versions 4.1 and 4.2, consider restricting access to the lquerypv command until a fix is available. As a temporary workaround, avoid using the -h command line parameter with the lquerypv command to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-1999-1117

Affected Products

Aix