CVE-1999-1295

CVSS 2.0 Score 4.6 of 10 (medium)

Details

Published Sep 17, 1996
Updated: Nov 20, 2024

Summary

CVE-1999-1295 is a vulnerability affecting Transarc DCE Distributed File System (DFS) version 1.1 on Solaris 2.4 and 2.5. This issue arises due to the inadequate initialization of the grouplist for users belonging to a large number of groups. Consequently, such users may gain unauthorized access to resources that are otherwise protected by DFS. This vulnerability poses a significant risk to systems where users belong to a vast number of groups and could lead to potential security breaches. It is recommended that affected systems be updated to a more secure version of DCE DFS to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share