CVE-1999-0316: Buffer Overflow
Buffer overflow in Linux splitvt command gives root access to local users.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Split VTfrom your environment.Uninstall Split VT or remove the splitvt binary from affected systems to eliminate the vulnerable component.
- Configuration
Change filesystem permissions on the splitvt binary to prevent unprivileged local users from executing it (e.g., remove execute permission for non-privileged users or set ownership/permissions so only administrative accounts can run it).
Split VT (splitvt binary) file execute permissions = restrict to root/administrators - Compensating control
Restrict local access to systems and accounts that can run splitvt (use host-based access controls, local account restrictions, or similar controls) to reduce the risk of exploitation by local users.
- Operational
Assume potential local privilege escalation where splitvt was present: audit hosts for signs of compromise, review local user activity, and re-image or remediate affected systems if compromise is confirmed.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0316?
CVE-1999-0316 is considered to have a critical severity level due to its potential for local users to gain root access.
How do I fix CVE-1999-0316?
To fix CVE-1999-0316, upgrade the splitvt command to version 1.6.4 or later.
Which versions of splitvt are affected by CVE-1999-0316?
CVE-1999-0316 affects all versions of splitvt up to and including 1.6.3.
What type of vulnerability is CVE-1999-0316?
CVE-1999-0316 is a buffer overflow vulnerability.
Who is the vendor for the affected software in CVE-1999-0316?
The vendor for the affected software in CVE-1999-0316 is Sam Lantinga.