CVE-1999-1252: High severity SCO UnixWare vulnerability
Vulnerability in a certain system call in SCO UnixWare 2.0.x and 2.1.0 allows local users to access arbitrary files and gain root privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Xinuos UnixWarefrom your environment.If SCO UnixWare 2.0.x or 2.1.0 systems are in use and cannot be patched, uninstall or decommission the affected UnixWare installations until a vendor fix is available.
- Compensating control
Restrict local interactive access to affected systems: limit logins to trusted administrative accounts, disable or remove unnecessary local user accounts, and enforce least-privilege for all local users to reduce the risk of exploitation leading to root privilege gain.
- Operational
Monitor system logs for suspicious local activity and signs of privilege escalation. If compromise is suspected, assume root may be exposed and rotate/replace root and other sensitive credentials and rebuild affected systems after remediation.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1252?
The severity of CVE-1999-1252 is critical due to its potential to allow local users to gain root privileges.
How do I fix CVE-1999-1252?
To fix CVE-1999-1252, apply the latest patches provided by Xinuos for the affected UnixWare versions.
Who is affected by CVE-1999-1252?
CVE-1999-1252 affects users of SCO UnixWare versions 2.0.x and 2.1.0.
What types of attacks can exploit CVE-1999-1252?
Local users can exploit CVE-1999-1252 through specific system calls to access arbitrary files and escalate privileges.
Is there a workaround for CVE-1999-1252?
A workaround for CVE-1999-1252 may include restricting user access to sensitive files until a patch is applied.