CVE-1999-1382
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/1999
Last modified:
03/04/2025
Description
NetWare NFS mode 1 and 2 implements the "Read Only" flag in Unix by changing the ownership of a file to root, which allows local users to gain root privileges by creating a setuid program and setting it to "Read Only," which NetWare-NFS changes to a setuid root program.
Impact
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:novell:netware:*:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://marc.info/?l=bugtraq&m=88427711321769&w=2
- http://marc.info/?l=bugtraq&m=90295697702474&w=2
- http://support.novell.com/cgi-bin/search/tidfinder.cgi?2940551=
- http://www.iss.net/security_center/static/7246.php
- http://marc.info/?l=bugtraq&m=88427711321769&w=2
- http://marc.info/?l=bugtraq&m=90295697702474&w=2
- http://support.novell.com/cgi-bin/search/tidfinder.cgi?2940551=
- http://www.iss.net/security_center/static/7246.php