CVE-1999-0064: Buffer Overflow
Buffer overflow in AIX lquerylv program gives root access to local users.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
IBM AIX lquerylvfrom your environment.Remove, rename, or otherwise prevent execution of the lquerylv binary on affected systems until an official vendor patch is available.
- Configuration
Restrict the lquerylv binary so that only the root account can execute it (remove execute permission for non-root/local users) until a patch is applied.
IBM AIX lquerylv executable permissions = root-only execute - Compensating control
Restrict local user access: disable or remove unprivileged local accounts and limit interactive/local logins to trusted administrators only until an official fix is available.
- Operational
If compromise is suspected, assume potential root compromise and perform incident response actions (forensic analysis, rebuild/restore from known-good media, rotate credentials and keys) before returning systems to production.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0064?
CVE-1999-0064 is considered critical due to its potential to grant root access to local users.
How do I fix CVE-1999-0064?
To fix CVE-1999-0064, apply patches provided by IBM for the affected AIX versions.
Which AIX versions are affected by CVE-1999-0064?
CVE-1999-0064 affects AIX versions 3.2, 3.2.4, 3.2.5, 4.1, 4.1.1, 4.1.2, 4.1.3, 4.1.4, 4.1.5, and 4.2.
What causes the vulnerability CVE-1999-0064?
CVE-1999-0064 is caused by a buffer overflow in the AIX lquerylv program.
Is CVE-1999-0064 a remote or local vulnerability?
CVE-1999-0064 is a local vulnerability, allowing local users to gain elevated privileges.