Back to Database
Status published
High
CVE-1999-0131
Buffer overflow and denial of service in Sendmail 8.7.5 and...
Vulnerability Description
Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-1999-0131
Credits & Attribution
No credits recorded in the NVD database.
References
More from eric allman
View All →CVE-2000-0319
mail.local in Sendmail 8.10.x does not properly identify the .\n...
Medium
5
CVE-1999-0976
Sendmail allows local users to reinitialize the aliases database via...
Low
2.1
CVE-1999-0393
Remote attackers can cause a denial of service in Sendmail...
Medium
5
CVE-1999-0206
MIME buffer overflow in Sendmail 8.8.0 and 8.8.1 gives root...
Critical
10
CVE-1999-0205
Denial of service in Sendmail 8.6.11 and 8.6.12....
Medium
5
Affected Vendor
eric allman
View all reports →Affected Software
sendmail, bsd os, osf 1, freebsd, hp-ux, aix, linux, internet faststart, openserver
Vulnerable Versions:
8.6, 8.7.1, 8.7.2, 8.7.3, 8.7.4, 8.7.5, 2.1, 1.3.2, 2.1.5, 10.01, 10.10, 10.20, 3.2, 4.1, 4.2, 3.0.3, 1.0, 5.0, 5.0.2
Timeline
Official Publish:
September 29th, 1999
Last Modified:
August 1st, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.