First published: Thu Jul 31 1997(Updated: )
Certain programs in HP-UX 10.20 do not properly handle large user IDs (UID) or group IDs (GID) over 60000, which could allow local users to gain privileges.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HPE HP-UX | =10.20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1308 is considered a local privilege escalation vulnerability.
To fix CVE-1999-1308, update to a patched version of HP-UX that properly handles user IDs and group IDs.
Programs in HP-UX 10.20 are affected if they do not handle large user IDs or group IDs correctly.
CVE-1999-1308 can be exploited by local users who have access to the system.
The potential impacts of CVE-1999-1308 include unauthorized privilege escalation and access to restricted resources.