CVE-1999-0022
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Jul 3, 1996
Updated: Nov 20, 2024
CWE ID 125
Summary
CVE-1999-0022 is a significant vulnerability affecting the rdist utility, which can lead to a local user gaining root privileges. This issue is caused by a buffer overflow in the expstr() function of rdist. An attacker can exploit this vulnerability by sending specially crafted data to the target system, resulting in the overflow of a buffer and the execution of arbitrary code with root privileges. This weakness poses a serious risk to affected systems and requires immediate attention and patching.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- SGI IRAX
- IBM AIX
- SunOS
- FreeBSD
- Sun Solaris
Affected Vendors
- IBM Corporation
- Oracle Corp
- Sun.
- FreeBSD Project
- Saskatchewan Government Insurance