CVE-1999-1229
CVSS 2.0 Score 2.1 of 10 (low)
Details
Published Feb 25, 1998
Updated: Nov 20, 2024
Summary
CVE-1999-1229 is a vulnerability affecting Quake 2 server version 3.13 on Linux. This issue arises due to the server's failure to properly check file permissions for the config.cfg configuration file. A local user can exploit this vulnerability by creating a symbolic link from config.cfg to an arbitrary file, thereby gaining unauthorized access to the targeted file. This security flaw poses a significant risk and should be addressed promptly by updating the Quake 2 server to a version with proper file permission checks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share