CVE-1999-0185: High severity Sun SunOS vulnerability

Published Oct 1, 1997
·
Updated

In SunOS or Solaris, a remote user could connect from an FTP server's data port to an rlogin server on a host that trusts the FTP server, allowing remote command execution.

Affected Software

9 affected components
Sun SunOS=5.3
Sun SunOS=4.1.4
Sun Solaris=2.4
Sun Solaris=2.5.1
Sun Solaris=2.5
Sun SunOS=5.5
Sun SunOS=5.4
Sun SunOS=5.5.1
Sun SunOS=4.1.3u1

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Remove

    Remove rlogin service (SunOS/Solaris) from your environment.

    Uninstall or remove the rlogin service where it is not required.

  2. Configuration

    Disable the rlogin service on hosts that trust FTP servers to prevent remote connections from FTP data ports from reaching rlogin.

    rlogin service (SunOS/Solaris) enabled = false
  3. Configuration

    Configure the FTP service so that connections from its data port cannot be used to reach a local rlogin server (prevent FTP data-port-originated connections to local rlogin).

    FTP server (SunOS/Solaris) allow_data_port_to_local_rlogin = false
  4. Compensating control

    Apply firewall/ACL rules to block or restrict access from remote FTP servers (and FTP data-port connections) to hosts' rlogin service; restrict rlogin access to only explicitly trusted management hosts.

  5. Operational

    Audit and remove trust relationships (for example entries in .rhosts and hosts.equiv) that allow FTP servers to be trusted by other hosts; revoke or revise trust entries that permit rlogin access from FTP servers.

Event History

Oct 1, 1997
CVE Published
04:00 AM
Data Sourced
via NVD·04:00 AM
DescriptionSeverityAffected Software
Sep 29, 1999
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-1999-0185?

CVE-1999-0185 is considered a critical vulnerability due to its potential for remote command execution.

2

How does CVE-1999-0185 exploit the system?

CVE-1999-0185 allows remote users to connect from an FTP server's data port to an rlogin server, potentially executing arbitrary commands on a trusted host.

3

Which versions of SunOS or Solaris are affected by CVE-1999-0185?

CVE-1999-0185 affects multiple versions including Solaris 2.4, 2.5, 2.5.1, and SunOS versions 4.1.3u1 through 5.5.1.

4

How can I mitigate CVE-1999-0185?

To mitigate CVE-1999-0185, it is recommended to restrict rlogin access and apply any available patches for the affected Solaris and SunOS versions.

5

Are there any known exploits for CVE-1999-0185?

Yes, there are known exploitation techniques for CVE-1999-0185 that utilize the FTP and rlogin connection vulnerabilities.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203