First published: Thu Aug 27 1998(Updated: )
Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a long TERM environmental variable and (2) a long entry in the .mscreenrc file.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xinuos OpenServer | =5.0 | |
UNIX | =3.2v4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1041 is considered to have high severity due to its potential for local users to gain root access.
To fix CVE-1999-1041, ensure that the mscreen program is updated to a non-vulnerable version and restrict access to the system.
CVE-1999-1041 affects users of SCO OpenServer 5.0 and SCO UNIX 3.2v4.
CVE-1999-1041 is caused by a buffer overflow vulnerability triggered by overly long input in the TERM environment variable and .mscreenrc file.
CVE-1999-1041 cannot be exploited remotely as it requires local access to the affected system.