Vulnerabilities > CVE-1999-0433

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
xfree86-project
slackware
redhat
netbsd
suse
exploit available

Summary

XFree86 startx command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.

Exploit-Db

descriptionX11R6 3.3.3 Symlink Vulnerability. CVE-1999-0433. Local exploit for linux platform
idEDB-ID:19257
last seen2016-02-02
modified1999-03-21
published1999-03-21
reporterStealthf0rk
sourcehttps://www.exploit-db.com/download/19257/
titleX11R6 3.3.3 Symlink Vulnerability