First published: Wed Dec 01 1999(Updated: )
Solaris arp allows local users to read files via the -f parameter, which lists lines in the file that do not parse properly.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris SPARC | =2.5.1 | |
Oracle Solaris SPARC | =2.5.1 | |
Oracle Solaris SPARC | =2.6 | |
Oracle Solaris SPARC | =7.0 | |
Sun SunOS | ||
Sun SunOS | =5.5.1 | |
Sun SunOS | =5.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0859 is considered a low-severity vulnerability as it allows local users to read files but does not allow remote access.
To fix CVE-1999-0859, restrict access to the Solaris arp command or implement appropriate file permissions to prevent unauthorized file reading.
CVE-1999-0859 affects Solaris versions 2.5.1, 2.6, 7.0, and various SunOS versions.
CVE-1999-0859 is a local file disclosure vulnerability that allows local users to read illegitimate file contents.
CVE-1999-0859 cannot be exploited remotely as it requires local access to the system.