CVE Vulnerabilities

CVE-1999-1422

Published: Jan 02, 1999 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other users.

Affected Software

Name Vendor Start Version End Version
Slackware_linux Slackware 2.0.35 (including) 2.0.35 (including)
Slackware_linux Slackware 3.4 (including) 3.4 (including)

References