CVE-1999-1434 Information

Description

login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing which prevents it from dropping privileges causing it to assign root privileges to any local user who logs on to the server.

Reference

http://marc.info/?l=bugtraq&m=90221104525951&w=2 http://www.securityfocus.com/bid/155

Share on: