VYPR
Unrated severityNVD Advisory· Published Sep 11, 1996· Updated Apr 16, 2026

CVE-1999-0131

CVE-1999-0131

Description

Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.

Affected products

19
  • cpe:2.3:a:eric_allman:sendmail:8.6:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:eric_allman:sendmail:8.6:*:*:*:*:*:*:*
    • cpe:2.3:a:eric_allman:sendmail:8.7.1:*:*:*:*:*:*:*
    • cpe:2.3:a:eric_allman:sendmail:8.7.2:*:*:*:*:*:*:*
    • cpe:2.3:a:eric_allman:sendmail:8.7.3:*:*:*:*:*:*:*
    • cpe:2.3:a:eric_allman:sendmail:8.7.4:*:*:*:*:*:*:*
    • cpe:2.3:a:eric_allman:sendmail:8.7.5:*:*:*:*:*:*:*
  • cpe:2.3:o:bsdi:bsd_os:2.1:*:*:*:*:*:*:*
  • cpe:2.3:o:digital:osf_1:1.3.2:*:*:*:*:*:*:*
  • cpe:2.3:o:freebsd:freebsd:2.1.5:*:*:*:*:*:*:*
  • HP/Hpux3 versions
    cpe:2.3:o:hp:hp-ux:10.01:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:hp:hp-ux:10.01:*:*:*:*:*:*:*
    • cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:*
    • cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*
  • IBM/Aix3 versions
    cpe:2.3:o:ibm:aix:3.2:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:ibm:aix:3.2:*:*:*:*:*:*:*
    • cpe:2.3:o:ibm:aix:4.1:*:*:*:*:*:*:*
    • cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:linux:3.0.3:*:*:*:*:*:*:*
  • cpe:2.3:o:sco:internet_faststart:1.0:*:*:*:*:*:*:*
  • cpe:2.3:o:sco:openserver:5.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:sco:openserver:5.0:*:*:*:*:*:*:*
    • cpe:2.3:o:sco:openserver:5.0.2:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.