CVE-1999-1109
CVSS 2.0 Score 5 of 10 (medium)
Details
Summary
CVE-1999-1109 is a denial-of-service vulnerability affecting Sendmail versions before 8.10.0. Malicious actors can cause the server to become unresponsive by sending a series of ETRN (Extended Mail From) commands, followed by disconnecting from the server. Sendmail continues to process these commands after the connection has been terminated, resulting in a resource exhaustion attack, rendering the server unavailable to legitimate users. This issue poses a significant risk to organizations using unpatched Sendmail servers and highlights the importance of keeping email servers up-to-date to protect against known vulnerabilities.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Sendmail