First published: Mon Apr 12 1999(Updated: )
Local users can perform a denial of service in NetBSD 1.3.3 and earlier versions by creating an unusual symbolic link with the ln command, triggering a bug in VFS.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NetBSD NetBSD | =1.3.1 | |
NetBSD NetBSD | =1.3.3 | |
NetBSD NetBSD | =1.3.2 | |
=1.3.1 | ||
=1.3.2 | ||
=1.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0446 allows local users to perform a denial of service in NetBSD version 1.3.3 and earlier by creating an unusual symbolic link.
The affected versions under CVE-1999-0446 include NetBSD 1.3.1, 1.3.2, and 1.3.3.
Mitigation for CVE-1999-0446 involves upgrading to a version of NetBSD that is later than 1.3.3.
CVE-1999-0446 is classified as a local vulnerability, as it requires local user access to exploit.
The impact of CVE-1999-0446 is a denial of service, which can cause instability in the affected NetBSD systems.