VulnerabilityModified
CVE-1999-1468
rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable.
MEDIUM 6.2EPSS 0.34%
Does this matter?
Lower severity and a low EPSS score (0.34%). Track it; it rarely justifies an emergency change on its own.
Description
rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable.
- CVSS 2.0
- 6.2 MEDIUMAV:L/AC:H/Au:N/C:C/I:C/A:C
- EPSS
- 0.34% probability · 27th percentile
- CISA KEV
- Not listed
- Affected
- next/next · sgi/irix · cray/unicos · sun/sunos
- Source
- cve@mitre.org
References
- http://www.alw.nih.gov/Security/8lgm/8lgm-Advisory-01.html
- http://www.cert.org/advisories/CA-91.20.rdist.vulnerabilityPatch, Third Party Advisory, US Government Resource
- http://www.iss.net/security_center/static/7160.php
- http://www.osvdb.org/8106
- http://www.securityfocus.com/bid/31Patch, Vendor Advisory
- http://www.alw.nih.gov/Security/8lgm/8lgm-Advisory-01.html
- http://www.cert.org/advisories/CA-91.20.rdist.vulnerabilityPatch, Third Party Advisory, US Government Resource
- http://www.iss.net/security_center/static/7160.php
- http://www.osvdb.org/8106
- http://www.securityfocus.com/bid/31Patch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.