CVE-1999-0837

CVSS 2.0 Score 10.0 of 10 (high)

Details

Published Nov 10, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0837 is a denial-of-service vulnerability affecting BIND, a widely used Domain Name System (DNS) software. The issue arises when BIND improperly closes TCP sessions, leading to a condition where the operating system fails to release resources, resulting in a denial-of-service condition. An attacker can exploit this vulnerability by deliberately sending malformed packets to a BIND server, potentially causing it to become unresponsive and denying service to legitimate users. This issue can be mitigated through proper configuration and patching of the vulnerable BIND installation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • ISC BIND
  • SunOS

Affected Vendors

  • Oracle Corp
  • Internet Storm Center