CVE-1999-1253: High severity SCO Internet FastStart vulnerability
Vulnerability in a kernel error handling routine in SCO OpenServer 5.0.2 and earlier, and SCO Internet FastStart 1.0, allows local users to gain root privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
SCO Internet FastStartfrom your environment.Uninstall SCO Internet FastStart from systems where it is not required.
- Remove
Remove
SCO OpenServerfrom your environment.Uninstall SCO OpenServer from systems where it is not required.
- Compensating control
Restrict and harden local access: limit interactive/local logins to trusted administrators, disable or remove unneeded local accounts, and isolate vulnerable hosts from untrusted users/networks (network segmentation, host firewall rules) until a vendor fix is available.
- Operational
Treat affected systems as potentially compromised: perform local forensic/ integrity checks for evidence of root compromise, rotate administrative/root credentials and any exposed keys, and restore systems from known-good backups if compromise is detected.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1253?
CVE-1999-1253 is classified as a local privilege escalation vulnerability, allowing local users to gain root access.
How do I fix CVE-1999-1253?
To mitigate CVE-1999-1253, upgrading to SCO OpenServer 5.0.3 or later is recommended.
Who is affected by CVE-1999-1253?
CVE-1999-1253 affects local users on SCO OpenServer versions up to 5.0.2 and SCO Internet FastStart 1.0.
What type of vulnerability is CVE-1999-1253?
CVE-1999-1253 is a kernel vulnerability in the error handling routine.
What are the potential impacts of CVE-1999-1253?
The exploitation of CVE-1999-1253 can lead to unauthorized root access, compromising system security.