First published: Wed Nov 18 1998(Updated: )
Buffer overflow in kppp in KDE allows local users to gain root access via a long PATH environmental variable.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
KDE KDE | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1107 is classified as a high severity vulnerability due to the potential for local users to gain root access.
CVE-1999-1107 exploits a buffer overflow in kppp by creating a long PATH environmental variable that can overwrite critical memory.
CVE-1999-1107 affects KDE version 1.0.
To fix CVE-1999-1107, it is recommended to upgrade to a patched version of KDE that resolves the buffer overflow issue.
Mitigation for CVE-1999-1107 without updating software is limited, but restricting user access to the affected system can help reduce risk.