CVE-1999-0733: Buffer Overflow
Buffer overflow in VMWare 1.0.1 for Linux via a long HOME environmental variable.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
VMWare 1.0.1 for Linuxfrom your environment.Uninstall VMWare 1.0.1 for Linux or stop running it until a vendor-supplied fix is available.
- Configuration
Ensure the HOME environment variable is not set to an excessively long value when launching VMware processes. Sanitize, limit the length of, or unset HOME for VMware processes and start VMware under a controlled environment with restricted environment variables.
Linux environment for VMware processes HOME environment variable length = limit or unset - Compensating control
Isolate or restrict access to hosts running affected VMware products (VMware Workstation and ESXi) and limit who can launch or administer virtual machine processes until a vendor patch is available.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0733?
CVE-1999-0733 is classified as a high-severity vulnerability due to its potential to cause a buffer overflow.
How do I fix CVE-1999-0733?
To fix CVE-1999-0733, users should upgrade VMware Workstation to a version later than 1.0.1.
What software is affected by CVE-1999-0733?
CVE-1999-0733 specifically affects VMware Workstation version 1.0.1 for Linux.
What is the cause of the CVE-1999-0733 vulnerability?
The vulnerability in CVE-1999-0733 is caused by a buffer overflow triggered by a long HOME environmental variable.
What are the potential impacts of CVE-1999-0733?
The potential impacts of CVE-1999-0733 include system crashes or the execution of arbitrary code.