Vulnerability Description
Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
CVSS Score
4.6
MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Eric Allman | Sendmail | 8.8 |
| Bsdi | Bsd Os | 2.1 |
| Freebsd | Freebsd | 2.1.5 |
| Hp | Hp-Ux | 10.00 |
| Ibm | Aix | 3.2 |
| Sco | Internet Faststart | 1.0 |
| Sco | Openserver | 5.0 |
| Sun | Solaris | 2.4 |
| Sun | Sunos | 4.1.3u1 |
References
FAQ
What is CVE-1999-0129?
CVE-1999-0129 is a vulnerability with a CVSS score of 4.6 (MEDIUM). Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
How severe is CVE-1999-0129?
CVE-1999-0129 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-0129?
Check the references section above for vendor advisories and patch information. Affected products include: Eric Allman Sendmail, Bsdi Bsd Os, Freebsd Freebsd, Hp Hp-Ux, Ibm Aix.