CVE-1999-1348: Low severity redhat Linux vulnerability
Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
On Red Hat Linux 6.0 and earlier, configure Linuxconf to properly disable PAM-based access to the shutdown command so local users cannot invoke shutdown and cause a denial of service.
Linuxconf (Red Hat Linux) PAM-based access to shutdown command = disabled
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1348?
CVE-1999-1348 is classified as a low-severity vulnerability due to its localized impact.
How does CVE-1999-1348 affect Red Hat Linux users?
CVE-1999-1348 allows local users to execute the shutdown command, potentially leading to a denial of service.
What versions of Red Hat Linux are affected by CVE-1999-1348?
CVE-1999-1348 affects Red Hat Linux versions 6.0 and earlier.
How can I mitigate CVE-1999-1348?
To mitigate CVE-1999-1348, users should upgrade their Red Hat Linux to a version later than 6.0 that properly disables PAM-based access to the shutdown command.
Is there an official patch for CVE-1999-1348?
There is no official patch for CVE-1999-1348, but upgrading to a supported version of Red Hat Linux will resolve the issue.