CVE-1999-0462
UnknownEPSS 0.40%
Last modified
CVE-1999-0462 is a vulnerability of currently unknown severity. suidperl in Linux Perl does not check the nosuid mount option on file systems, allowing local users to gain root access by placing a setuid script in a mountable file system, e.g. a CD-ROM or floppy disk.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
suidperl in Linux Perl does not check the nosuid mount option on file systems, allowing local users to gain root access by placing a setuid script in a mountable file system, e.g. a CD-ROM or floppy disk.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Suse | Suse Linux | 5.3 |
References
- http://www.securityfocus.com/bid/339Patch, Vendor Advisory
- http://www.securityfocus.com/bid/339Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-1999-0462?
suidperl in Linux Perl does not check the nosuid mount option on file systems, allowing local users to gain root access by placing a setuid script in a mountable file system, e.g. a CD-ROM or floppy disk.
How severe is CVE-1999-0462?
Severity scoring for CVE-1999-0462 is pending analysis. The EPSS model estimates a 0.40% probability of exploitation in the next 30 days.
How do I fix CVE-1999-0462?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 1999
- CVE-1999-0455The Expression Evaluator sample application in ColdFusion al…
- CVE-1999-0457Linux ftpwatch program allows local users to gain root privi…
- CVE-1999-0458L0phtcrack 2.5 used temporary files in the system TEMP direc…
- CVE-1999-0459Local users can perform a denial of service in Alpha Linux, …
- CVE-1999-0460Buffer overflow in Linux autofs module through long director…
- CVE-1999-0461Versions of rpcbind including Linux, IRIX, and Wietse Venema…
- CVE-1999-0464Local users can perform a denial of service in Tripwire 1.2 …
- CVE-1999-0465Remote attackers can crash Lynx and Internet Explorer using …
- CVE-1999-0466The SVR4 /dev/wabi special device file in NetBSD 1.3.3 and e…
- CVE-1999-0467The Webcom CGI Guestbook programs wguest.exe and rguest.exe …
- CVE-1999-0468Internet Explorer 5.0 allows a remote server to read arbitra…8.2
- CVE-1999-0469Internet Explorer 5.0 allows window spoofing, allowing a rem…
Are you affected by CVE-1999-0462?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
