CVE-1999-0958

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Jan 12, 1998
Updated: Nov 20, 2024

Summary

CVE-1999-0958 is a vulnerability affecting sudo version 1.5.x. This issue permits local users to execute arbitrary commands by exploiting a ".." (dot dot) attack in the sudo application. The ".." sequence can be used to navigate to parent directories, allowing a user to move up the directory structure and ultimately gain unauthorized access to sensitive files or system functions. This vulnerability poses a significant security risk, particularly in environments where sudo is widely used, and should be addressed by applying the appropriate patches or updates.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Todd Miller Sudo

Affected Vendors

  • Todd Miller