Search

published date: December 20, 1996

CVE-1999-1026 : aspppd on Solaris 2.5...

Description

aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on the /tmp/.asppp.fifo file.

Product(s):

  • Sun Solaris 2.4
  • Sun Solaris 2.5.1
  • Sun Solaris 2.5

Question to Ask Vendors:

  1. Can you confirm whether your systems are affected by CVE-1999-1026, and if so, what steps are you currently taking to mitigate this vulnerability?
  2. What is your estimated timeline for fully resolving CVE-1999-1026 in your products or services, and how will you communicate updates on this issue to us as your customer?

READY TO GET RESULTS YOU CAN TRUST?