LOW · 2.1

CVE-1999-1409

The at program in IRIX 6.2 and NetBSD 1.3.2 and earlier allows local users to read portions of arbitrary files by submitting the file to at with the -f argument, which generates error messages that at...

Vulnerability Description

The at program in IRIX 6.2 and NetBSD 1.3.2 and earlier allows local users to read portions of arbitrary files by submitting the file to at with the -f argument, which generates error messages that at sends to the user via e-mail.

CVSS Score

2.1

LOW

AV:L/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
SgiIrix6.2
NetbsdNetbsd<= 1.3.2

References

FAQ

What is CVE-1999-1409?

CVE-1999-1409 is a vulnerability with a CVSS score of 2.1 (LOW). The at program in IRIX 6.2 and NetBSD 1.3.2 and earlier allows local users to read portions of arbitrary files by submitting the file to at with the -f argument, which generates error messages that at...

How severe is CVE-1999-1409?

CVE-1999-1409 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-1999-1409?

Check the references section above for vendor advisories and patch information. Affected products include: Sgi Irix, Netbsd Netbsd.