CVE-1999-1419: Buffer Overflow
Buffer overflow in nssnisplus.so.1 library in NIS+ in Solaris 2.3 and 2.4 allows local users to gain root privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
nss_nisplus.so.1from your environment.Remove or rename the nss_nisplus.so.1 library on affected systems to prevent it from being loaded until an official patch is available.
- Configuration
Disable NIS+ lookups so the nss_nisplus.so.1 library is no longer invoked by name-service resolution (disable NIS+ on affected Solaris/SunOS systems until a vendor fix is available).
NIS+ (nss_nisplus.so.1) NIS+ lookups = disabled - Compensating control
Restrict local user access to affected hosts (limit who can log in locally, restrict account creation, and isolate vulnerable systems on the network) to reduce the risk of local privilege escalation.
- Operational
If compromise is suspected, audit system logs for signs of privilege escalation, check for unauthorized root changes or SUID binaries, and rotate credentials for any accounts that may have been exposed.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1419?
CVE-1999-1419 is classified as a high severity vulnerability due to the potential for local users to gain root privileges.
How do I fix CVE-1999-1419?
To fix CVE-1999-1419, it is recommended to apply the appropriate patches provided by the vendor for Solaris versions 2.3, 2.4, and 5.4.
What software is affected by CVE-1999-1419?
CVE-1999-1419 affects the nss_nisplus.so.1 library in Solaris 2.3, 2.4, and SunOS 5.4.
Can CVE-1999-1419 be exploited remotely?
CVE-1999-1419 cannot be exploited remotely as it requires local access to the system.
Who is affected by CVE-1999-1419?
Local users on Solaris 2.3, 2.4, and SunOS 5.4 systems are at risk from CVE-1999-1419.