First published: Tue May 11 1999(Updated: )
The INN inndstart program allows local users to gain root privileges via the "pathrun" parameter in the inn.conf file.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ISC INN | =2.0 | |
ISC INN | =2.1 | |
ISC INN | =2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0785 is considered a high severity vulnerability due to its potential to allow local users to gain root privileges.
To fix CVE-1999-0785, modify the inn.conf file to ensure the 'pathrun' parameter is set securely, preventing unauthorized access.
CVE-1999-0785 affects ISC INN versions 2.0, 2.1, and 2.2.
No, CVE-1999-0785 can only be exploited by local users with access to the affected system.
There is no specific patch for CVE-1999-0785, but users should upgrade to a later version of ISC INN that addresses this vulnerability.