VYPR
Unrated severityNVD Advisory· Published Jun 26, 1996· Updated Apr 16, 2026

CVE-1999-0138

CVE-1999-0138

Description

The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access.

Affected products

16
  • cpe:2.3:o:apple:a_ux:3.1.1:*:*:*:*:*:*:*
  • cpe:2.3:o:digital:osf_1:1.3:*:*:*:*:*:*:*
  • FreeBSD/FreeBSD3 versions
    cpe:2.3:o:freebsd:freebsd:2.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:freebsd:freebsd:2.0:*:*:*:*:*:*:*
    • cpe:2.3:o:freebsd:freebsd:2.0.5:*:*:*:*:*:*:*
    • cpe:2.3:o:freebsd:freebsd:2.1.0:*:*:*:*:*:*:*
  • HP/Hpux3 versions
    cpe:2.3:o:hp:hp-ux:10:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:hp:hp-ux:10:*:*:*:*:*:*:*
    • cpe:2.3:o:hp:hp-ux:8:*:*:*:*:*:*:*
    • cpe:2.3:o:hp:hp-ux:9:*:*:*:*:*:*:*
  • IBM/Aix2 versions
    cpe:2.3:o:ibm:aix:3.2.5:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:ibm:aix:3.2.5:*:*:*:*:*:*:*
    • cpe:2.3:o:ibm:aix:4:*:*:*:*:*:*:*
  • Linux/Kernel2 versions
    cpe:2.3:o:linux:linux_kernel:1.2.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:linux:linux_kernel:1.2.0:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:2.0:*:*:*:*:*:*:*
  • cpe:2.3:o:nec:asl_ux_4800:*:*:*:*:*:*:*:*
  • NEC/Ews Ux V2 versions
    cpe:2.3:o:nec:ews-ux_v:4.2:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:nec:ews-ux_v:4.2:*:*:*:*:*:*:*
    • cpe:2.3:o:nec:ews-ux_v:4.2mp:*:*:*:*:*:*:*
  • cpe:2.3:o:nec:up-ux_v:4.2mp:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.