PoC Index

CVE-1999-1048

MEDIUM 4.6EPSS 0.5%

Buffer overflow in bash 2.0.0, 1.4.17, and other versions allows local attackers to gain privileges by creating an extremely large directory name, which is inserted into the password prompt via the \w option in the PS1 environmental variable when another user changes into that directory.

CVSS v2.0
4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
EPSS
0.54% chance of exploitation in the next 30 days, 43th percentile
Published
2002-03-09
Updated
2024-08-01

Proof-of-concept exploits (1)

References

Related