First published: Tue Nov 09 1999(Updated: )
Vulnerability in StackGuard before 1.21 allows remote attackers to bypass the Random and Terminator Canary security mechanisms by using a non-linear attack which directly modifies a pointer to a return address instead of using a buffer overflow to reach the return address entry itself.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Immunix | <=1.21 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1111 is considered a high severity vulnerability due to its potential for exploiting the stack's security mechanisms.
To fix CVE-1999-1111, update StackGuard to version 1.21 or later.
CVE-1999-1111 can be exploited through non-linear attack methods that modify pointers to return addresses directly.
CVE-1999-1111 affects versions of StackGuard prior to 1.21.
Yes, the vulnerability in CVE-1999-1111 can potentially lead to remote code execution by bypassing security mechanisms.