CVE-1999-1329: Buffer Overflow
Buffer overflow in SysVInit in Red Hat Linux 5.1 and earlier allows local users to gain privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Restrict local user access to affected Red Hat Linux systems (disable or remove untrusted local accounts; limit console and SSH login to trusted administrators) and isolate affected hosts from untrusted users until a vendor patch or upgrade is available.
- Operational
If untrusted local access has occurred, assume possible privilege escalation: audit affected systems for signs of compromise, remove any unauthorized changes or accounts, and rotate credentials for privileged accounts before applying a vendor fix.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1329?
The CVE-1999-1329 vulnerability is considered to have a high severity due to its potential for local privilege escalation.
How do I fix CVE-1999-1329?
To fix CVE-1999-1329, it is essential to upgrade to a version of Red Hat Linux later than 5.1 that does not contain the buffer overflow vulnerability.
What causes CVE-1999-1329?
CVE-1999-1329 is caused by a buffer overflow in the SysVInit component of Red Hat Linux 5.1 and earlier, allowing local users to exploit the flaw.
Who is affected by CVE-1999-1329?
Local users operating on Red Hat Linux 5.1 and earlier are primarily affected by CVE-1999-1329 due to unsafe handling of inputs.
What are the consequences of CVE-1999-1329?
The consequences of CVE-1999-1329 include unauthorized privilege escalation, which can lead to system compromise by local attackers.