CVE-1999-1390

suidmanager 0.18 - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-1390. PoCs published by Thomas Roessler.

AI-analyzed exploit summary This is a writeup describing a vulnerability in /usr/bin/suidexec that allows arbitrary command execution as root if a SUID root shell script exists on the system. The exploit leverages the improper handling of SUID scripts to escalate privileges.

Description

suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program on the command line.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Thomas Roessler · textlocallinux
https://www.exploit-db.com/exploits/19080

This is a writeup describing a vulnerability in /usr/bin/suidexec that allows arbitrary command execution as root if a SUID root shell script exists on the system. The exploit leverages the improper handling of SUID scripts to escalate privileges.

Classification
Writeup 90%
Attack Type
Lpe
Complexity
Trivial
Reliability
Reliable
Target: suidexec (version not specified)
No auth needed
Prerequisites: Presence of a SUID root shell script on the system
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/94
Patch, Vendor Advisory mailing-list x_refsource_bugtraq
http://darwin.bio.uci.edu/~mcoogan/bugtraq/msg00890.html

Scores

EPSS 0.0068
EPSS Percentile 49.0%

Details

Status published
Products (1)
debian/debian_linux 2.0
Published Apr 28, 1998
Tracked Since Feb 18, 2026