CVE-1999-1198: High severity NeXT NeXT vulnerability
BuildDisk program on NeXT systems before 2.0 does not prompt users for the root password, which allows local users to gain root privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Next Nexto a version that resolves this vulnerability.Fixed in 2.0
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1198?
CVE-1999-1198 is classified as a high severity vulnerability due to the potential for local users to gain root privileges.
How do I fix CVE-1999-1198?
To fix CVE-1999-1198, upgrade to version 2.0 or later of the NeXT operating system.
Who is affected by CVE-1999-1198?
Users of NeXT systems prior to version 2.0 are affected by CVE-1999-1198.
What are the consequences of CVE-1999-1198?
CVE-1999-1198 allows local users to execute the BuildDisk program without a root password, leading to unauthorized root access.
Is CVE-1999-1198 still relevant today?
While primarily historical, CVE-1999-1198 highlights important lessons in privilege management that are still applicable in modern systems.