CVE-1999-1109

CVSS 2.0 Score 5 of 10 (medium)

Details

Published Dec 22, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-1109 is a denial-of-service vulnerability affecting Sendmail versions before 8.10.0. Malicious actors can cause the server to become unresponsive by sending a series of ETRN (Extended Mail From) commands, followed by disconnecting from the server. Sendmail continues to process these commands after the connection has been terminated, resulting in a resource exhaustion attack, rendering the server unavailable to legitimate users. This issue poses a significant risk to organizations using unpatched Sendmail servers and highlights the importance of keeping email servers up-to-date to protect against known vulnerabilities.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share