CVE-1999-0390: Buffer Overflow
Buffer overflow in Dosemu Slang library in Linux.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Dosemu Slang libraryfrom your environment.Uninstall the Dosemu Slang library (and/or the Dosemu package) from affected Red Hat and SUSE Linux systems if the component is not required.
- Compensating control
If removal is not possible, disable or restrict use of Dosemu (limit access to trusted users and hosts) and monitor affected systems for signs of exploitation until a vendor patch or update is available.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0390?
CVE-1999-0390 has a high severity level due to the potential for a buffer overflow, which can allow attackers to execute arbitrary code.
How do I fix CVE-1999-0390?
To fix CVE-1999-0390, apply the latest patches provided by your Linux distribution, such as Red Hat or SUSE.
What software is affected by CVE-1999-0390?
CVE-1999-0390 affects various versions of Red Hat Linux (4.0, 4.1, 4.2, 5.0, 5.1, 5.2) and SUSE Linux (5.0, 5.1).
What is a buffer overflow in the context of CVE-1999-0390?
In the context of CVE-1999-0390, a buffer overflow occurs when the Dosemu Slang library processes data larger than the buffer can handle, leading to memory corruption.
Are there any known exploits for CVE-1999-0390?
Yes, there are known exploits for CVE-1999-0390 that leverage the buffer overflow vulnerability to gain unauthorized access or execute code.