← Back

CVE-1999-0433

nvd nist
Published: Mar 21, 1999Modified: Apr 16, 2026

JSON object

Loading...
4.6
Vector
AV:L/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 3.9 / Impact: 6.4
Source: NVD

Description

XFree86 startx command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.

Affected (14)

Products: Xfree86 Project: X11r6 · Netbsd: Netbsd · Redhat: Linux · +2 more
Show all products
X11r6
1 product
Netbsd
1 product
Linux
1 product
Slackware Linux
1 product
Suse Linux
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.3.3
Configuration B
13 vulnerable
Vulnerable SoftwareAffected Versions
Netbsd
Version 1.3.2
Version 1.3.3
Redhat
Version 5.1
Version 5.2
Slackware
Version 3.3
Version 3.4
Version 3.5
Version 3.6
Version 4.0
Suse
Version 5.1
Version 5.2
Version 6.0
Version 6.1

Timeline

No history available yet.