CVE-1999-0693

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Mar 2, 2000
Updated: Nov 20, 2024

Summary

CVE-1999-0693 is a significant buffer overflow vulnerability affecting the TT_SESSION environment variable in the ToolTalk shared library. This issue allows local users to manipulate the variable and potentially gain root privileges, posing a serious security risk to affected systems. By sending specially crafted data to the vulnerable application, an attacker can cause the buffer to overflow and execute arbitrary code, thus bypassing user access controls and escalating privileges. This vulnerability underscores the importance of timely software updates and secure programming practices to protect against such attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM AIX
  • HP-UX

Affected Vendors

  • IBM Corporation
  • HP