First published: Sat Jan 01 2000(Updated: )
Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCALE environment variable.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD Kernel | =2.1.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0964 is considered a critical vulnerability due to its potential for remote code execution.
To fix CVE-1999-0964, upgrade to a version of FreeBSD that is not affected, ideally a version later than 2.1.6.
CVE-1999-0964 affects FreeBSD version 2.1.6 and potentially earlier versions.
CVE-1999-0964 is classified as a buffer overflow vulnerability.
Yes, CVE-1999-0964 can be exploited remotely if an attacker sets a malicious PATH_LOCALE environment variable.