CVE-1999-0032

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Oct 25, 1996
Updated: Nov 20, 2024

Summary

CVE-1999-0032 is a significant buffer overflow vulnerability affecting the lpr utility, which is used for printing in BSD-based systems including Linux. The issue arises from a long -C (classification) command line option, enabling local users to surreptitiously execute arbitrary code with root privileges. This flaw poses a serious threat to system security, as attackers can potentially gain complete control over the affected system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • SGI IRAX
  • FreeBSD
  • SunOS

Affected Vendors

  • Oracle Corp
  • FreeBSD Project
  • Saskatchewan Government Insurance