CVE-1999-1229

CVSS 2.0 Score 2.1 of 10 (low)

Details

Published Feb 25, 1998
Updated: Nov 20, 2024

Summary

CVE-1999-1229 is a vulnerability affecting Quake 2 server version 3.13 on Linux. This issue arises due to the server's failure to properly check file permissions for the config.cfg configuration file. A local user can exploit this vulnerability by creating a symbolic link from config.cfg to an arbitrary file, thereby gaining unauthorized access to the targeted file. This security flaw poses a significant risk and should be addressed promptly by updating the Quake 2 server to a version with proper file permission checks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share