CVE-1999-0002: Buffer Overflow
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
NFS (mountd)from your environment.If NFS is not required, uninstall or remove the NFS mountd component to eliminate exposure to the vulnerability.
- Configuration
Stop and disable the NFS mountd service until an official patch or vendor fix is available.
NFS (mountd) service_enabled = false - Compensating control
Restrict network access to the NFS mountd service to trusted hosts or management networks using firewall rules, host-based ACLs, or network segmentation to block remote access by untrusted systems.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0002?
CVE-1999-0002 has a critical severity level due to its potential to give root access to remote attackers.
How do I fix CVE-1999-0002?
To fix CVE-1999-0002, you should upgrade to a version of the software that has patched the buffer overflow vulnerability.
What systems are affected by CVE-1999-0002?
CVE-1999-0002 mainly affects various versions of Linux systems including those from Red Hat and SCO OpenLinux.
What could an attacker do by exploiting CVE-1999-0002?
By exploiting CVE-1999-0002, an attacker could execute arbitrary commands with root privileges on the affected system.
Is CVE-1999-0002 still a threat today?
While CVE-1999-0002 was disclosed in 1999, it remains a legacy vulnerability that could still affect outdated systems not yet patched.