First published: Fri Sep 19 1997(Updated: )
Race condition in xterm allows local users to modify arbitrary files via the logging option.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xterm | ||
Oracle Xorg-x11-drv-void | <5.0 | |
Oracle Xorg-x11-drv-void | =5.0 | |
Oracle Xorg-x11-drv-void | =5.0-fix-01 | |
Oracle Xorg-x11-drv-void | =5.0-fix-02 | |
Oracle Xorg-x11-drv-void | =5.0-fix-03 | |
Oracle Xorg-x11-drv-void | =5.0-fix-04 | |
Oracle Xorg-x11-drv-void | =5.0-fix-05 | |
Oracle Xorg-x11-drv-void | =5.0-fix-06 | |
Oracle Xorg-x11-drv-void | =5.0-fix-07 | |
Oracle Xorg-x11-drv-void | =5.0-fix-08 | |
Oracle Xorg-x11-drv-void | =5.0-fix-09 | |
Oracle Xorg-x11-drv-void | =5.0-fix-10 | |
Oracle Xorg-x11-drv-void | =5.0-fix-11 | |
Oracle Xorg-x11-drv-void | =5.0-fix-12 | |
Oracle Xorg-x11-drv-void | =5.0-fix-13 | |
Oracle Xorg-x11-drv-void | =5.0-fix-14 | |
Oracle Xorg-x11-drv-void | =5.0-fix-15 | |
Oracle Xorg-x11-drv-void | =5.0-fix-16 | |
Oracle Xorg-x11-drv-void | =5.0-fix-17 | |
Oracle Xorg-x11-drv-void | =5.0-fix-18 | |
Oracle Xorg-x11-drv-void | =5.0-fix-19 | |
Oracle Xorg-x11-drv-void | =5.0-fix-20 | |
Oracle Xorg-x11-drv-void | =5.0-fix-21 | |
Oracle Xorg-x11-drv-void | =5.0-fix-22 | |
Oracle Xorg-x11-drv-void | =5.0-fix-23 | |
Oracle Xorg-x11-drv-void | =5.0-fix-24 | |
Oracle Xorg-x11-drv-void | =5.0-fix-25 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0965 is classified as a medium severity vulnerability due to its potential to allow local users to modify arbitrary files.
To fix CVE-1999-0965, it is recommended to update the xterm package to a version that has addressed this race condition.
CVE-1999-0965 affects X.Org's xterm and X11 versions up to and including 5.0.
CVE-1999-0965 cannot be exploited remotely, as it requires local user access to the system.
The impact of CVE-1999-0965 is that it can allow local users to gain unauthorized access to modify files, leading to potential data loss or corruption.