CVE-1999-0851

CVSS 2.0 Score 2.1 of 10 (low)

Details

Published Nov 10, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0851 is a denial-of-service vulnerability affecting the BIND named software. Maliciously crafted NAPTR resource records can cause BIND named to enter an infinite loop, leading to a denial-of-service condition. An attacker can exploit this issue by sending specially crafted DNS queries to a vulnerable BIND named server, resulting in resource exhaustion and unavailability of DNS services. This vulnerability was first identified in 1999 and poses a significant risk to DNS infrastructure if not properly mitigated. It's essential to update BIND named installations to a patched version to prevent potential denial-of-service attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM AIX
  • SunOS

Affected Vendors

  • IBM Corporation
  • Oracle Corp