CVE-1999-1044: Medium severity digital unix vulnerability
Vulnerability in Advanced File System Utility (advfs) in Digital UNIX 4.0 through 4.0d allows local users to gain privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Advanced File System Utility (advfs)from your environment.Uninstall or disable the advfs component if it is not required until a vendor-supplied patch or fixed version is available.
- Compensating control
Restrict local user access: disable or remove unneeded/untrusted local user accounts and limit console/local login access to trusted administrators until a patch is provided.
- Operational
Monitor and audit for signs of privilege escalation by local users (review system and authentication logs, investigate unexpected privileged activity) and take corrective action on any accounts observed to have gained elevated privileges.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1044?
The severity of CVE-1999-1044 is high due to the potential for local users to gain elevated privileges.
How do I fix CVE-1999-1044?
To fix CVE-1999-1044, it is recommended to apply the latest patches provided by Digital for UNIX versions 4.0 to 4.0d.
Who is affected by CVE-1999-1044?
CVE-1999-1044 affects local users of Digital UNIX 4.0 through 4.0d who may exploit the vulnerability.
What type of vulnerability is CVE-1999-1044?
CVE-1999-1044 is a privilege escalation vulnerability found in the Advanced File System Utility.
Is CVE-1999-1044 still a concern today?
While CVE-1999-1044 was identified over two decades ago, systems still running affected versions could remain at risk if not updated.