CVE Vulnerabilities

CVE-1999-1422

Published: Jan 02, 1999 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other users.

Affected Software

NameVendorStart VersionEnd Version
Slackware_linuxSlackware2.0.35 (including)2.0.35 (including)
Slackware_linuxSlackware3.4 (including)3.4 (including)

References