CVE-1999-1487: High severity IBM AIX vulnerability
Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable or remove the 'printq' user account on affected AIX systems to prevent exploitation of the digest vulnerability that allows printq users to gain root privileges.
AIX user account 'printq' account_enabled = false - Compensating control
Restrict or remove 'printq' user permissions: apply strict filesystem permissions and ACLs so printq cannot create or modify system files, and limit access to print-queue and print-management utilities to trusted administrative accounts only.
- Operational
Audit the system for files created or modified by 'printq' user(s), verify integrity of system files, and restore or remediate any impacted files from known-good backups.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1487?
CVE-1999-1487 is considered critical as it allows printq users to gain root privileges on AIX systems.
How do I fix CVE-1999-1487?
To fix CVE-1999-1487, you should apply the relevant patch provided by IBM for your specific version of AIX.
Which versions of AIX are affected by CVE-1999-1487?
CVE-1999-1487 affects AIX versions 4.1.x, 4.2.x, and 4.3.
What can attackers do by exploiting CVE-1999-1487?
By exploiting CVE-1999-1487, attackers can create and modify any file on the system, potentially compromising its integrity.
Is CVE-1999-1487 a local or remote vulnerability?
CVE-1999-1487 is a local vulnerability that requires an authenticated user on the system to exploit.