PT-1999-1107 · Netbsd · Netbsd

Published

1999-03-17

·

Updated

2022-08-17

·

CVE-1999-0422

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions NetBSD version 1.3.3
Description The issue allows local users to execute programs in some file systems that have the noexec flag set. This occurs due to a problem in the mount functionality.
Recommendations For NetBSD version 1.3.3, consider restricting access to the mount function until a patch is available. As a temporary workaround, avoid using file systems with the noexec flag set to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-1999-0422

Affected Products

Netbsd