CVE Vulnerabilities

CVE-1999-1434

Published: Jul 13, 1998 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which prevents it from dropping privileges, causing it to assign root privileges to any local user who logs on to the server.

Affected Software

NameVendorStart VersionEnd Version
Slackware_linuxSlackware3.1 (including)3.1 (including)
Slackware_linuxSlackware3.2 (including)3.2 (including)
Slackware_linuxSlackware3.3 (including)3.3 (including)
Slackware_linuxSlackware3.4 (including)3.4 (including)
Slackware_linuxSlackware3.5 (including)3.5 (including)

References