CVE

CVE-1999-1210

Severity:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/11/1997
Last modified:
19/12/2017

Description

xterm in Digital UNIX 4.0B *with* patch kit 5 allows local users to overwrite arbitrary files via a symlink attack on a core dump file, which is created when xterm is called with a DISPLAY environmental variable set to a display that xterm cannot access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:digital:unix:4.0b:*:*:*:*:*:*:*