CVE-1999-1142

SunOS 4.1.2 and earlier allows local users to gain privileges via "LD_*" environmental variables to certain dynamically linked setuid or setgid programs such as (1) login, (2) su, or (3) sendmail, that change the real and effective user ids to the same user.
Configurations

Configuration 1 (hide)

cpe:2.3:o:sun:sunos:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:30

Type Values Removed Values Added
References () http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/116 - () http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/116 -
References () http://www.cert.org/advisories/CA-1992-11.html - Patch, Third Party Advisory, US Government Resource () http://www.cert.org/advisories/CA-1992-11.html - Patch, Third Party Advisory, US Government Resource
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/3152 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/3152 -

Information

Published : 1992-05-27 04:00

Updated : 2024-11-20 23:30


NVD link : CVE-1999-1142

Mitre link : CVE-1999-1142

CVE.ORG link : CVE-1999-1142


JSON object : View

Products Affected

sun

  • sunos