CVE-1999-0964
CVSS 2.0 Score 7.2 of 10 (high)
Details
Published Jan 1, 2000
Updated: Nov 20, 2024
Summary
CVE-1999-0964 is a buffer overflow vulnerability affecting the FreeBSD setlocale function in the libc module. By supplying a excessively long PATH_LOCALE environment variable, an attacker can exploit this flaw and inject arbitrary code, potentially leading to system compromise. This issue was addressed in FreeBSD 4.3-RELEASE. Users running older versions are advised to apply the relevant patches or upgrade to a secure release.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- FreeBSD
Affected Vendors
- FreeBSD Project