First published: Wed Jun 30 1999(Updated: )
Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Linux | <=6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1348 is classified as a low-severity vulnerability due to its localized impact.
CVE-1999-1348 allows local users to execute the shutdown command, potentially leading to a denial of service.
CVE-1999-1348 affects Red Hat Linux versions 6.0 and earlier.
To mitigate CVE-1999-1348, users should upgrade their Red Hat Linux to a version later than 6.0 that properly disables PAM-based access to the shutdown command.
There is no official patch for CVE-1999-1348, but upgrading to a supported version of Red Hat Linux will resolve the issue.