CVE-1999-0315: Buffer Overflow
Buffer overflow in Solaris fdformat command gives root access to local users.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Oracle Solaris fdformat commandfrom your environment.Uninstall or remove the fdformat binary from systems where it is not required until a vendor fix is provided.
- Configuration
Disable or restrict execution of the fdformat command for non-administrative/local users (for example, remove execute permissions or otherwise prevent untrusted users from running the binary) until a vendor patch is available.
Solaris fdformat execution_by_local_users = disabled or restricted - Compensating control
Restrict local account access and privileges on affected Oracle Solaris / SunOS systems (limit who can log in locally, enforce least privilege and isolate affected hosts from untrusted users) until the vulnerability is remediated.
- Operational
Monitor for signs of local privilege escalation and, if compromise is suspected, perform incident response actions such as restoring from known-good backups, rebuilding affected hosts, and rotating credentials.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0315?
CVE-1999-0315 is classified as a critical vulnerability due to its ability to grant root access to local users.
How do I fix CVE-1999-0315?
To fix CVE-1999-0315, apply the relevant patches provided by the vendor for the affected Solaris and SunOS versions.
Who is affected by CVE-1999-0315?
CVE-1999-0315 affects users of Solaris versions 2.4, 2.5, 2.6, and SunOS versions 5.3 to 5.7.
Can CVE-1999-0315 be exploited remotely?
CVE-1999-0315 cannot be exploited remotely; it requires local access to the affected system.
What systems are vulnerable to CVE-1999-0315?
Vulnerable systems include Solaris running on SPARC and x86 architectures as well as certain versions of SunOS.