CVE-1999-0434

Caldera OpenLinux - Symlink Attack in XFree86 xfs Command

Title source: llm
STIX 2.1

Description

XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.

References (1)

Core 1
Core References
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/359

Scores

EPSS 0.0043
EPSS Percentile 62.7%

Details

Status published
Products (6)
caldera/openlinux 1.2
debian/debian_linux 2.0 (2 CPE variants)
debian/debian_linux 2.1
netbsd/netbsd 1.3.3
redhat/linux 5.1
suse/suse_linux 5.3
Published Mar 30, 1999
Tracked Since Feb 18, 2026