CVE-1999-0979: High severity SCO UnixWare vulnerability
The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into init before the privileged process is executed.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
gdbfrom your environment.Uninstall the GNU debugger (gdb) from affected Xinuos UnixWare systems where it is not required to prevent local users from using a debugger to insert traps into privileged processes.
- Compensating control
Restrict and harden local user access: limit interactive/local accounts to trusted administrators, restrict installation or execution of debugging tools, and enforce host-based access controls (e.g., local ACLs, sudo restrictions) to prevent unprivileged users from attaching debuggers to privileged processes.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0979?
CVE-1999-0979 is considered a critical vulnerability as it allows local users to gain root privileges.
How do I fix CVE-1999-0979?
To mitigate CVE-1999-0979, ensure that your system is updated with the latest security patches from Xinuos for UnixWare.
Who is affected by CVE-1999-0979?
CVE-1999-0979 affects local users of Xinuos UnixWare versions 7.0, 7.0.1, 7.1, and 7.1.1.
What can attackers do with CVE-1999-0979?
Attackers can exploit CVE-1999-0979 to gain unauthorized root access on affected UnixWare systems.
Is CVE-1999-0979 still relevant for current systems?
CVE-1999-0979 is less relevant for modern systems, but organizations still running vulnerable versions of UnixWare should address it immediately.