VYPR
Unrated severityNVD Advisory· Published Feb 5, 1997· Updated Apr 16, 2026

CVE-1999-0298

CVE-1999-0298

Description

ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a .. (dot dot) attack.

Affected products

5
  • cpe:2.3:o:slackware:slackware_linux:2.1:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:slackware:slackware_linux:2.1:*:*:*:*:*:*:*
    • cpe:2.3:o:slackware:slackware_linux:2.2:*:*:*:*:*:*:*
    • cpe:2.3:o:slackware:slackware_linux:2.3:*:*:*:*:*:*:*
  • cpe:2.3:o:sun:sunos:4.1.3:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:sun:sunos:4.1.3:*:*:*:*:*:*:*
    • cpe:2.3:o:sun:sunos:4.1.4:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.