CVE-1999-1299: Critical severity Slackware Slackware Linux vulnerability

Published Feb 3, 1997
·
Updated

rcp on various Linux systems including Red Hat 4.0 allows a "nobody" user or other user with UID of 65535 to overwrite arbitrary files, since 65535 is interpreted as -1 by chown and other system calls, which causes the calls to fail to modify the ownership of the file.

Affected Software

2 affected components
Slackware Slackware Linux=3.1
redhat Linux=4.0

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Remove

    Remove rcp from your environment.

    Uninstall or remove the rcp program/binaries from affected systems (e.g., Red Hat Linux and Slackware Linux) or otherwise prevent its use.

  2. Configuration

    Disable rcp (and associated rsh) services on affected systems to prevent use until a fix is available.

    rcp/rsh enabled = false
  3. Compensating control

    If removal or disabling is not immediately possible, block or restrict rcp/rsh traffic and access (e.g., via firewall, host-based ACLs, or network segmentation) to trusted hosts only until the vulnerability is remediated.

Event History

Feb 3, 1997
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Sep 12, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-1999-1299?

CVE-1999-1299 has a moderate severity rating due to the potential for arbitrary file overwriting by unauthorized users.

2

How do I fix CVE-1999-1299?

To fix CVE-1999-1299, update the affected systems to the latest version of your Linux distribution that addresses this vulnerability.

3

Which Linux systems are affected by CVE-1999-1299?

CVE-1999-1299 affects various Linux systems, specifically Red Hat 4.0 and Slackware 3.1.

4

Who can exploit CVE-1999-1299?

The CVE-1999-1299 vulnerability can be exploited by users with a UID of 65535, often the 'nobody' user.

5

What are the impacts of CVE-1999-1299?

The impact of CVE-1999-1299 allows attackers to overwrite arbitrary files, potentially leading to system compromise.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203