CVE-1999-0038
CVSS 3.1 Score 8.4 of 10 (high)
Details
Summary
CVE-1999-0038 is a significant vulnerability affecting the xlock program. This buffer overflow issue allows local users to execute arbitrary commands with root privileges, posing a serious threat to system security. The xlock program, used to lock the X Window System session, fails to properly validate user input, leading to a buffer overflow condition. An attacker can exploit this vulnerability by sending specially crafted input to the program, resulting in the execution of malicious code with elevated privileges. This vulnerability was first identified in 1999 and highlights the importance of addressing buffer overflow vulnerabilities in critical system components.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- SGI IRAX
- HP-UX family of operating systems
- SunOS
- Debian
- IBM AIX
Affected Vendors
- Debian
- IBM Corporation
- Oracle Corp
- Saskatchewan Government Insurance
- HP