7.2
CVSSv2

CVE-1999-0038

Published: 26/04/1997 Updated: 17/08/2022
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 730
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in xlock program allows local users to execute commands as root.

Vulnerable Product Search on Vulmon Subscribe to Product

data general dg ux 3.0

sgi irix 6.0.1

sgi irix 5.3

data general dg ux 5.0

sgi irix 6.1

data general dg ux 1.0

sgi irix 5.0.1

data general dg ux 4.0

sgi irix 5.1.1

data general dg ux 2.0

sgi irix 6.4

sgi irix 5.0

sgi irix 5.1

data general dg ux 6.0

sgi irix 5.2

data general dg ux 7.0

sgi irix 6.3

sgi irix 6.0

sun sunos 5.3

hp hp-ux 10.30

debian debian linux 0.93

hp hp-ux 10.01

sun solaris 2.4

hp hp-ux 10.00

sun solaris 2.5.1

sun solaris 2.5

debian debian linux 1.1

debian debian linux 1.2

debian debian linux 1.3

sun sunos 5.5

sun sunos 5.5.1

hp hp-ux 10.20

hp hp-ux 10.24

hp hp-ux 10.34

ibm aix 3.2

bsdi bsd os 2.1

hp hp-ux 10.08

hp hp-ux 10.16

ibm aix 4.2

sun sunos 5.4

hp hp-ux 10.10

ibm aix 4.1

Exploits

/* source: wwwsecurityfocuscom/bid/224/info The xlock program is used to lock the local X display until the user supplies the correct password A buffer overflow condition has been discovered in xlock that may allow an unauthorized user to gain root access */ /* * * /usr/bin/X11/xlock exploit (kinda' coded) by BeastMaster V * * ...
/* source: wwwsecurityfocuscom/bid/224/info The xlock program is used to lock the local X display until the user supplies the correct password A buffer overflow condition has been discovered in xlock that may allow an unauthorized user to gain root access */ /* x86 XLOCK overflow exploit by cesaro@0wnedorg 4/17/97 Origin ...