CVE Vulnerabilities

CVE-1999-1422

Published: Jan 02, 1999 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other users.

Affected Software

Name Vendor Start Version End Version
Slackware_linux Slackware 2.0.35 (including) 2.0.35 (including)
Slackware_linux Slackware 3.4 (including) 3.4 (including)

References