7.2
CVSSv2

CVE-1999-1026

Published: 20/12/1996 Updated: 18/10/2016
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on the /tmp/.asppp.fifo file.

Vulnerable Product Search on Vulmon Subscribe to Product

sun solaris 2.5

sun solaris 2.4

sun solaris 2.5.1

Exploits

source: wwwsecurityfocuscom/bid/292/info Aspppd is a tool shipped with Solaris for dial up PPP access This tool creates files in the /tmp directory insecurely (in particular /tmp/aspppfifo) allowing other users to link to these files an possibly elevate their privelages This program is not by default shipped with SUID root privelages ...