CVE-1999-1209: High severity sco OpenServer vulnerability
Vulnerability in scoterm in SCO OpenServer 5.0 and SCO Open Desktop/Open Server 3.0 allows local users to gain root privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
scoterm (SCO OpenServer / SCO Open Desktop)from your environment.If scoterm is not required, uninstall or remove the scoterm binary/package from affected systems or otherwise disable/remove the executable to eliminate the vulnerable component.
- Compensating control
Restrict local interactive logins and limit access to affected systems to trusted administrative users only; apply least-privilege to local accounts and isolate affected hosts from untrusted users until a vendor fix is available.
- Operational
Investigate affected systems for signs of local privilege escalation; if compromise is suspected, rotate any exposed credentials, remediate or rebuild from known-good images, and restore services after ensuring systems are clean.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1209?
CVE-1999-1209 has a critical severity rating, as it allows local users to gain root privileges on affected systems.
How do I fix CVE-1999-1209?
To fix CVE-1999-1209, users should apply applicable security patches provided by SCO for OpenServer 5.0 and Open Desktop 3.0.
Which versions are affected by CVE-1999-1209?
CVE-1999-1209 affects SCO OpenServer version 5.0 and SCO Open Desktop versions 3.0.
What type of attack is associated with CVE-1999-1209?
CVE-1999-1209 is associated with local privilege escalation attacks due to improper handling of user permissions.
Who is vulnerable to CVE-1999-1209?
Local users on systems running SCO OpenServer 5.0 and SCO Open Desktop 3.0 are vulnerable to CVE-1999-1209.