Unrated severityNVD Advisory· Published Jan 2, 1999· Updated Apr 16, 2026
CVE-1999-1422
CVE-1999-1422
Description
The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other users.
Affected products
2cpe:2.3:o:slackware:slackware_linux:2.0.35:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:slackware:slackware_linux:2.0.35:*:*:*:*:*:*:*
- cpe:2.3:o:slackware:slackware_linux:3.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.