CVE-1999-1572
low
📛 Threat Title
CVE-1999-1572
Description
cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (15)
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
-
NVD detail: CVE-1999-1572
NVD Recent CVEs
cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files.
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
Remediations (10)
-
web:csrc.nist.rip
The NVD is the U.S. government repository of standards based vulnerability management data represented using the Security Content Automation Protocol (SCAP). This data enables automation of vulnerability management, security measurement, and compliance. The NVD includes databases of security checklist references, security-related software flaws, misconfigurations, product names, and impact ...
-
web:cvevault.com
CVE Vault - Search and explore Common Vulnerabilities and Exposures ( CVE ) database. Find security vulnerabilities by CVE ID, vendor, severity, and year. Stay secure with comprehensive CVE information.
-
web:federalnewsnetwork.com
AI drives new debate around CISA software patching deadlines CISA this year has already started accelerating the deadlines for agencies to patch software bugs posted to the Known Exploited Vulnerabilities (KEV) catalog.
-
web:msrc.microsoft.com
The Microsoft Security Response Center (MSRC) investigates all reports of security vulnerabilities affecting Microsoft products and services, and provides the information here as part of the ongoing effort to help you manage security risks and help keep your systems protected.
-
web:translate.google.com
Google's service, offered free of charge, instantly translates words, phrases, and web pages between English and over 100 other languages.
-
web:www.cisa.gov
If vulnerabilities cannot be remediated within the recommended timeframes, develop a remediation plan for action and coordination across the organization. The remediation plan should include: Vulnerability remediation constraints Interim mitigation actions to overcome constraints Final actions required to remediate vulnerability
-
web:www.cve.org
At cve .org, we provide the authoritative reference method for publicly known information-security vulnerabilities and exposures
-
web:www.nist.gov
NIST maintains the National Vulnerability Database (NVD), a repository of information on software and hardware flaws that can compromise computer security. This is a key piece of the nation's cybersecurity infrastructure.
-
web:www.prajwaldesai.com
Discover effective methods to repair SCCM client agent, including PowerShell scripts, command line, Right-Click Tools, and Advanced Insights for seamless troubleshooting.
-
web:www.virustotal.com
VirusTotal is a platform for scanning files and URLs for viruses, malware, and other threats using multiple antivirus engines.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.