CVE-1999-1021: High severity Sun SunOS vulnerability
NFS on SunOS 4.1 through 4.1.2 ignores the high order 16 bits in a 32 bit UID, which allows a local user to gain root access if the lower 16 bits are set to 0, as fixed by the NFS jumbo patch upgrade.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
SunOSto a version that resolves this vulnerability.Patch NFS jumbo patch upgrade
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1021?
CVE-1999-1021 is a high severity vulnerability that allows local users to gain root access.
How do I fix CVE-1999-1021?
To fix CVE-1999-1021, apply the NFS jumbo patch upgrade which mitigates the vulnerability.
Who is affected by CVE-1999-1021?
CVE-1999-1021 affects users of SunOS versions 4.1, 4.1.1, and 4.1.2.
What are the consequences of exploiting CVE-1999-1021?
Exploitation of CVE-1999-1021 can lead to unauthorized root access, compromising system security.
Is CVE-1999-1021 still a threat today?
CVE-1999-1021 primarily affects outdated systems, but if still in use, it poses a significant threat.