CVE-1999-0208: Critical severity SGI IRIX vulnerability
rpc.ypupdated (NIS) allows remote users to execute arbitrary commands.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
rpc.ypupdated (NIS)from your environment.Uninstall or remove the rpc.ypupdated/ypupdated component or the NIS package if NIS functionality is not required.
- Configuration
Disable the rpc.ypupdated (ypupdated) service to prevent remote command execution (stop and disable the service in your service manager or init scripts).
rpc.ypupdated (NIS) service_enabled = false - Compensating control
If rpc.ypupdated cannot be disabled or removed immediately, restrict network access to the rpc.ypupdated/ypupdated service (NIS) using firewall rules or network ACLs so only trusted hosts can reach it.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0208?
CVE-1999-0208 is classified as a critical vulnerability because it allows remote users to execute arbitrary commands.
How do I fix CVE-1999-0208?
To fix CVE-1999-0208, update your system to a version of SGI IRIX, IBM AIX, or NEC ASL that is not affected by this vulnerability.
What software is affected by CVE-1999-0208?
CVE-1999-0208 affects SGI IRIX versions 3 to 5.2, IBM AIX versions 3.2 and 4.1, and various NEC operating systems.
What type of attacks can exploit CVE-1999-0208?
CVE-1999-0208 can be exploited to gain unauthorized access to the system by executing arbitrary commands remotely.
Is there a workaround for CVE-1999-0208?
While patching is the recommended approach, temporarily disabling the rpc.ypupdated service can serve as a workaround for CVE-1999-0208.