CVE-1999-1501

CVSS 2.0 Score 4.6 of 10 (medium)

Details

Published Apr 8, 1998
Updated: Nov 20, 2024

Summary

CVE-1999-1501 is a vulnerability affecting the ipxchk and ipxlink utilities in SGI OS2 IRIX 6.3. This issue arises from the failure to clear the IFS environmental variable before executing system calls. Consequently, local users can inject arbitrary commands into the system, potentially leading to unauthorized access and privilege escalation. This vulnerability poses a significant security risk and requires immediate attention from system administrators. It is recommended that affected systems are updated to a patched version or that the vulnerable utilities are removed to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • SGI IRAX

Affected Vendors

  • Saskatchewan Government Insurance