CVE-1999-1574: Buffer Overflow
Buffer overflow in the lex routines of nslookup for AIX 4.3 may allow attackers to cause a core dump and possibly execute arbitrary code via "long input strings."
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
IBM AIX nslookupfrom your environment.If nslookup is not required on AIX 4.3 systems, uninstall or remove the nslookup utility to eliminate the vulnerable component that can be triggered by long input strings.
- Compensating control
Restrict access to AIX 4.3 hosts and limit who can execute nslookup. Implement network controls (firewall, ACLs) to prevent untrusted users or systems from reaching management/diagnostic services on affected hosts.
- Operational
Monitor affected AIX 4.3 systems for crashes (core dumps) and other signs of exploitation. Collect and preserve forensic evidence for any suspicious activity and investigate promptly.
- Operational
Apply any vendor-supplied patches or updates for nslookup on IBM AIX 4.3 as soon as IBM releases them.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1574?
CVE-1999-1574 is considered a critical vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-1999-1574?
To fix CVE-1999-1574, you should apply the latest security patches provided by IBM for AIX 4.3.0.
What causes CVE-1999-1574?
CVE-1999-1574 is caused by a buffer overflow in the lex routines of nslookup due to long input strings.
What systems are affected by CVE-1999-1574?
CVE-1999-1574 specifically affects IBM AIX version 4.3.0.
Can CVE-1999-1574 be exploited remotely?
Yes, CVE-1999-1574 can potentially be exploited remotely if an attacker can send crafted long input strings to nslookup.