CVE-1999-1229

Quake 2 server 3.13 on Linux does not properly check file permissions for the config.cfg configuration file, which allows local users to read arbitrary files via a symlink from config.cfg to the target file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:id_software:quake_2_server:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:30

Type Values Removed Values Added
References () http://www.securityfocus.com/archive/1/8590 - Exploit, Vendor Advisory () http://www.securityfocus.com/archive/1/8590 - Exploit, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/733 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/733 -

Information

Published : 1998-02-25 05:00

Updated : 2024-11-20 23:30


NVD link : CVE-1999-1229

Mitre link : CVE-1999-1229

CVE.ORG link : CVE-1999-1229


JSON object : View

Products Affected

id_software

  • quake_2_server