CVE-1999-0078: Low severity NCR Mp-ras vulnerability
pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
pcnfsd (rpc.pcnfsd)from your environment.Uninstall pcnfsd (rpc.pcnfsd) if it is not required.
- Configuration
Stop and disable the pcnfsd (rpc.pcnfsd) service to prevent local users from exploiting RPC call arguments.
pcnfsd (rpc.pcnfsd) service_enabled = false
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0078?
CVE-1999-0078 is considered a critical vulnerability as it allows local users to change file permissions or execute arbitrary commands.
How do I fix CVE-1999-0078?
To fix CVE-1999-0078, you should update the affected software to a version that has addressed this vulnerability.
Who is affected by CVE-1999-0078?
CVE-1999-0078 affects multiple operating systems and software including NCR MP-RAS, SGI IRIX, and various versions of IBM AIX.
What are the potential impacts of exploiting CVE-1999-0078?
Exploiting CVE-1999-0078 could allow an attacker to gain unauthorized access and control over file permissions, potentially compromising system security.
Is CVE-1999-0078 a known vulnerability?
Yes, CVE-1999-0078 is a well-recognized vulnerability that has been documented in the Common Vulnerabilities and Exposures system.