CVE-1999-0693

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Mar 2, 2000
Updated: Nov 20, 2024

Summary

CVE-1999-0693 is a serious buffer overflow vulnerability affecting the TT_SESSION environment variable in the ToolTalk shared library. This issue allows local users to exploit the buffer and potentially gain root privileges on the system. The vulnerability occurs due to insufficient bounds checking, enabling attackers to write arbitrary code into the memory of the affected process. The exploitation of this flaw can lead to significant security risks, including the compromise of sensitive data or the ability to install malware with elevated permissions. It is strongly recommended that users apply the available patch to mitigate this vulnerability and secure their systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM AIX
  • HP-UX

Affected Vendors

  • IBM Corporation
  • HP