Unrated severityNVD Advisory· Published Jul 21, 1999· Updated Apr 16, 2026
CVE-1999-1165
CVE-1999-1165
Description
GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (1) gain root privileges via a malicious program in the .fingerrc file, or (2) read arbitrary files via symbolic links from .plan, .forward, or .project files.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/535nvdPatchVendor Advisory
- www.securityfocus.com/archive/1/2478nvdExploitVendor Advisory
- marc.infonvd
News mentions
0No linked articles in our index yet.