CVE-1999-0032
CVSS 2.0 Score 7.2 of 10 (high)
Details
Published Oct 25, 1996
Updated: Nov 20, 2024
Summary
CVE-1999-0032 is a significant buffer overflow vulnerability affecting the lpr utility, which is used for printing in BSD-based systems including Linux. The issue arises from a long -C (classification) command line option, enabling local users to surreptitiously execute arbitrary code with root privileges. This flaw poses a serious threat to system security, as attackers can potentially gain complete control over the affected system.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- SGI IRAX
- FreeBSD
- SunOS
Affected Vendors
- Oracle Corp
- FreeBSD Project
- Saskatchewan Government Insurance