CVE-1999-0092: High severity IBM AIX vulnerability
Various vulnerabilities in the AIX portmir command allows local users to obtain root access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
IBM AIX portmirfrom your environment.Disable or uninstall the portmir command/binary on affected AIX systems if it is not required. Remove or rename the executable to prevent execution until an official patch or fix is available.
- Compensating control
Restrict local user access on affected systems: disable interactive logins for non‑administrative accounts, remove unnecessary local accounts, and enforce least privilege for local users to reduce risk of local exploitation.
- Operational
If exploitation is suspected, perform incident response: collect forensic evidence, audit logs for signs of local privilege escalation, rotate root and other high‑privilege credentials, and rebuild or reimage compromised hosts from trusted media.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0092?
CVE-1999-0092 is classified as a critical vulnerability due to the potential for local users to gain root access.
How do I fix CVE-1999-0092?
To fix CVE-1999-0092, you should apply the relevant patches provided by IBM for AIX version 4.2.1.
Who is affected by CVE-1999-0092?
Local users of IBM AIX version 4.2.1 are affected by CVE-1999-0092.
What are the consequences of exploiting CVE-1999-0092?
Exploiting CVE-1999-0092 could allow local users to gain unauthorized root access, leading to system compromise.
Is CVE-1999-0092 still a threat today?
While CVE-1999-0092 is an older vulnerability, it remains a threat if legacy systems running AIX 4.2.1 are still in use without mitigation.