CVE-1999-1299

CVSS 2.0 Score 10 of 10 (high)

Details

Published Feb 3, 1997
Updated: Nov 20, 2024

Summary

CVE-1999-1299 is a vulnerability affecting various Linux systems, including Red Hat 4.0. The issue stems from the rcp (remote copy) command, which interprets a UID of 65535 as -1 for chown and other system calls. Consequently, these calls fail to modify the ownership of files, enabling a "nobody" user or any user with a UID of 65535 to overwrite arbitrary files. This vulnerability poses a significant risk, as it allows unauthorized users to manipulate important system files.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Red Hat Enterprise Linux

Affected Vendors

  • Red Hat