CVE-1999-0234

Linux - OS Command Injection via Command Separator Handling

Title source: llm
STIX 2.1

Description

Bash treats any character with a value of 255 as a command separator.

References (1)

Core 1
Core References
Third Party Advisory, VDB Entry x_refsource_misc
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0234

Scores

EPSS 0.0017
EPSS Percentile 38.3%

Details

Status published
Products (5)
caldera/openlinux
redhat/linux 3.0.3
sgi/irix
suse/suse_linux 4.2
yggdrasil/linux
Published Oct 08, 1996
Tracked Since Feb 18, 2026