CVE-1999-0095: Critical severity Eric Allman Sendmail vulnerability
The debug command in Sendmail is enabled, allowing attackers to execute commands as root.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable the debug command in Sendmail to prevent attackers from using it to execute commands as root.
Sendmail debug command = disabled
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0095?
CVE-1999-0095 is classified as a critical severity vulnerability due to its ability to allow attackers to execute commands with root privileges.
How do I fix CVE-1999-0095?
To fix CVE-1999-0095, disable the debug command in Sendmail or upgrade to a version that has addressed this vulnerability.
What software is affected by CVE-1999-0095?
CVE-1999-0095 affects Sendmail version 5.58.
What are the potential impacts of CVE-1999-0095?
The potential impacts of CVE-1999-0095 include unauthorized command execution and complete system compromise.
Is CVE-1999-0095 still a concern today?
Yes, CVE-1999-0095 remains a concern for systems still running the vulnerable version of Sendmail without proper mitigations.