CVE detail
CVE-1999-1299 — CVE-1999-1299
Published 1997-02-03 · Modified 2026-06-16 · Vendor redhat · Product linux · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0184
EPSS probability
exploitation probability, 30d
77.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
rcp on various Linux systems including Red Hat 4.0 allows a "nobody" user or other user with UID of 65535 to overwrite arbitrary files, since 65535 is interpreted as -1 by chown and other system calls, which causes the calls to fail to modify the ownership of the file.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References