CVE-1999-0381

Debian Linux - Buffer Overflow in syslog

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-0381. PoCs published by c0nd0r.

AI-analyzed exploit summary This exploit targets a buffer overflow in the SUPER program's syslog functionality (CVE-1999-0381) to achieve local privilege escalation. It injects shellcode to create a SUID root shell at /tmp/sh.

Description

super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access.

Exploits (1)

exploitdb WORKING POC VERIFIED
by c0nd0r · clocallinux
https://www.exploit-db.com/exploits/19270

This exploit targets a buffer overflow in the SUPER program's syslog functionality (CVE-1999-0381) to achieve local privilege escalation. It injects shellcode to create a SUID root shell at /tmp/sh.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: SUPER (with SYSLOG option enabled)
No auth needed
Prerequisites: SUPER compiled with SYSLOG option · Local access to the system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/342

Scores

EPSS 0.0073
EPSS Percentile 49.5%

Details

Status published
Products (2)
debian/debian_linux 2.0
linux/linux_kernel 2.6.20.1
Published Feb 26, 1999
Tracked Since Feb 18, 2026