First published: Wed Nov 01 1995(Updated: )
Guessable magic cookies in X Windows allows remote attackers to execute commands, e.g. through xterm.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SGI IRIX | ||
XFree86 X Server | ||
Oracle Solaris SPARC | =2.5.1 | |
Oracle Solaris SPARC | =2.5 | |
Oracle Solaris SPARC | =7.0 | |
Sun SunOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0241 is classified as a high severity vulnerability due to its potential for remote command execution.
To fix CVE-1999-0241, ensure that magic cookies are not guessable by switching to more secure authentication methods.
CVE-1999-0241 affects systems running SGI IRIX, XFree86 X Server, and various versions of Oracle Solaris and SunOS.
Yes, CVE-1999-0241 can be exploited remotely, allowing attackers to execute commands on affected systems.
In the context of CVE-1999-0241, magic cookies are authentication tokens used to control access to the X Windows display system.