CVE-1999-0051: High severity GlobeTrotter Flexlm vulnerability

Published Jan 6, 1997
·
Updated

Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX.

Affected Software

50 affected components
GlobeTrotter Flexlm=4.1
GlobeTrotter Flexlm=5.0
SGI IRIX=6.0.1
SGI IRIX=5.3
SGI IRIX=6.0.1
SGI IRIX=4.0.5_iop
SGI IRIX=4.0
SGI IRIX=3.3.2
SGI IRIX=4.0.5h
SGI IRIX=4.0.4
SGI IRIX=4.0.1
SGI IRIX=6.1
GlobeTrotter Flexlm=4.0
SGI IRIX=5.0.1
SGI IRIX=4.0.5e
SGI IRIX=4.0.3
SGI IRIX=5.1.1
SGI IRIX=4.0.5a
SGI IRIX=3.3.3
SGI IRIX=6.4
SGI IRIX=4.0.5_ipr
SGI IRIX=5.0
SGI IRIX=4.0.1t
SGI IRIX=5.1
SGI IRIX=4.0.5f
SGI License Oeo=3.1.1
SGI IRIX=4.0.5g
SGI IRIX=5.2
SGI IRIX=4.0.5d
SGI IRIX=6.0
SGI IRIX=6.3
SGI IRIX=4.0.5
SGI License Oeo=3.1
SGI IRIX=4.0.4b
SGI IRIX=6.2
SGI IRIX=4.0.2
SGI License Oeo=3.0
SGI IRIX=4.0.4t
Sun SunOS=4.1.4
Sun Solaris=2.4
Sun Solaris=2.5.1
Sun Solaris=2.5
Sun SunOS=4.1.4jl
Sun SunOS=5.5
Sun SunOS=5.4
Sun SunOS=4.1.1
Sun SunOS=5.5.1
Sun SunOS=4.1.3u1
Sun SunOS=4.1.3
Sun SunOS=4.1.2

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Remove

    Remove FLEXlm LicenseManager from your environment.

    Uninstall or disable FLEXlm LicenseManager on IRIX systems if it is not required, or remove the product from affected hosts until a vendor-provided fix is available.

  2. Configuration

    Stop and disable the FLEXlm LicenseManager service on IRIX systems (ensure it does not start on boot) until a vendor fix or patch is applied.

    FLEXlm LicenseManager service_enabled = false
  3. Compensating control

    Restrict access to systems running FLEXlm LicenseManager on IRIX using network controls (firewall, ACLs, host-based firewall) to only trusted administrative IPs and management networks until the issue is remediated.

  4. Operational

    Identify IRIX systems running FLEXlm LicenseManager versions 4.0 through 5.0; inspect for unexpected files and processes, remove or quarantine unauthorized files, terminate suspicious processes, and perform incident investigation and remediation on compromised hosts.

Event History

Jan 6, 1997
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Sep 29, 1999
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-1999-0051?

CVE-1999-0051 has a moderate severity rating due to its potential for arbitrary file creation and execution.

2

How do I fix CVE-1999-0051?

To fix CVE-1999-0051, upgrade FLEXlm License Manager to a version higher than 5.0.

3

Which software versions are affected by CVE-1999-0051?

CVE-1999-0051 affects FLEXlm License Manager versions 4.0 to 5.0, and various versions of SGI IRIX and Sun OS.

4

What kind of vulnerability is CVE-1999-0051?

CVE-1999-0051 is classified as an arbitrary file creation and program execution vulnerability.

5

What systems are vulnerable to CVE-1999-0051?

Systems running affected versions of FLEXlm License Manager and certain SGI IRIX and Sun OS versions are vulnerable to CVE-1999-0051.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203