CVE-1999-1106

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Apr 29, 1998
Updated: Nov 20, 2024

Summary

CVE-1999-1106 is a buffer overflow vulnerability affecting the kppp application within the KDE environment. Maliciously crafted long command line arguments under the -c (account_name) option can cause the buffer to overflow, enabling local attackers to execute arbitrary code with root privileges. This poses a significant security risk, as unauthorized escalation of privileges can lead to system compromise. Users are advised to update their KDE installation to a patch version as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • K Desktop Environment

Affected Vendors

  • KDE Community
  • K. De