CVE-1999-1499

CVSS 2.0 Score 2.1 of 10 (low)

Details

Published Apr 10, 1998
Updated: Nov 20, 2024

Summary

CVE-1999-1499 is a vulnerability affecting ISC BIND 4.9 and 8.1 named daemons. The issue allows local users to destructively manipulate files through symlink attacks. Specifically, a SIGINT signal sent to the named_dump.db process or a SIGIOT signal to the named.stats process can result in file destruction. These vulnerabilities highlight the importance of securing DNS servers against local attacks and updating software to mitigate known vulnerabilities.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • ISC BIND

Affected Vendors

  • Internet Storm Center