Vulnerability Description
Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.
CVSS Score
10.0
HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian | Netkit | 0.07 |
| Ibm | Aix | 3.1 |
| Nec | Asl Ux 4800 | All versions |
| Nec | Ews-Ux V | All versions |
| Nec | Up-Ux V | All versions |
References
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/147
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/147
FAQ
What is CVE-1999-0048?
CVE-1999-0048 is a vulnerability with a CVSS score of 10.0 (HIGH). Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.
How severe is CVE-1999-0048?
CVE-1999-0048 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-0048?
Check the references section above for vendor advisories and patch information. Affected products include: Debian Netkit, Ibm Aix, Nec Asl Ux 4800, Nec Ews-Ux V, Nec Up-Ux V.