Search

published date: July 16, 1996

CVE-1999-1301 : A design flaw in...

Description

A design flaw in the Z-Modem protocol allows the remote sender of a file to execute arbitrary programs on the client, as implemented in rz in the rzsz module of FreeBSD before 2.1.5, and possibly other programs.

Product(s):

  • FreeBSD
  • FreeBSD 0.4_1
  • FreeBSD 1.0
  • FreeBSD 1.1.5.1
  • FreeBSD 1.1.5

Question to Ask Vendors:

  1. Can you confirm whether your systems are affected by CVE-1999-1301, and if so, what steps are you currently taking to mitigate this vulnerability?
  2. What is your estimated timeline for fully resolving CVE-1999-1301 in your products or services, and how will you communicate updates on this issue to us as your customer?

READY TO GET RESULTS YOU CAN TRUST?