CVE-1999-0396

CVSS 2.0 Score 2.6 of 10 (low)

Details

Published Feb 17, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0396 is a vulnerability affecting NetBSD TCP servers, where a race condition exists between the select() and accept() system calls. This issue allows remote attackers to induce a denial of service by manipulating the server's network connections, exploiting the time difference between the select() and accept() functions. The vulnerability could result in the server becoming unresponsive, leading to service disruption. This race condition is an important security concern for NetBSD TCP servers and necessitates timely patching to mitigate the risk of denial of service attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • NetBSD
  • OpenBSD

Affected Vendors

  • OpenBSD Project
  • Netbsd