CVE-1999-1330
UnknownEPSS 0.40%
Last modified
CVE-1999-1330 is a vulnerability of currently unknown severity. The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer overflows that would be prevented by a properly implemented snprintf.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer overflows that would be prevented by a properly implemented snprintf.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Debian | Debian Linux | 4.0 |
| Redhat | Linux | 4.2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-1999-1330?
The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer overflows that would be prevented by a properly implemented snprintf.
How severe is CVE-1999-1330?
Severity scoring for CVE-1999-1330 is pending analysis. The EPSS model estimates a 0.40% probability of exploitation in the next 30 days.
How do I fix CVE-1999-1330?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 1999
- CVE-1999-1323Norton AntiVirus for Internet Email Gateways (NAVIEG) 1.0.1.…
- CVE-1999-1324VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECw…9.8
- CVE-1999-1325SAS System 5.18 on VAX/VMS is installed with insecure permis…
- CVE-1999-1327Buffer overflow in linuxconf 1.11r11-rh2 on Red Hat Linux 5.…
- CVE-1999-1328linuxconf before 1.11.r11-rh3 on Red Hat Linux 5.1 allows lo…
- CVE-1999-1329Buffer overflow in SysVInit in Red Hat Linux 5.1 and earlier…
- CVE-1999-1331netcfg 2.16-1 in Red Hat Linux 4.2 allows the Ethernet inter…
- CVE-1999-1332gzexe in the gzip package on Red Hat Linux 5.0 and earlier a…
- CVE-1999-1333automatic download option in ncftp 2.4.2 FTP client in Red H…
- CVE-1999-1334Multiple buffer overflows in filter command in Elm 2.4 allow…
- CVE-1999-1335snmpd server in cmu-snmp SNMP package before 3.3-1 in Red Ha…
- CVE-1999-13363Com HiPer Access Router Card (HiperARC) 4.0 through 4.2.29 …
Are you affected by CVE-1999-1330?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
