CVE-1999-0009 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 29% (pctl 98)
Patch early
A public exploit exists.
Description
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 29.01% — more likely to be exploited than 98% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 1998-04-08 |
| Last modified | 2026-06-16 |
Affected (13)
| Vendor | Product |
|---|---|
| bsdi | bsd os |
| caldera | openlinux |
| data general | dg ux |
| ibm | aix |
| isc | bind |
| nec | asl ux 4800 |
| netbsd | netbsd |
| redhat | linux |
| sco | open desktop |
| sco | unixware |
| sgi | irix |
| sun | solaris |
| sun | sunos |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | ISC BIND (Linux/BSD) - Remote Buffer Overflow (1) | 1998-04-08 |
| exploit-db | ISC BIND (Multiple OSes) - Remote Buffer Overflow (2) | 1998-04-08 |
References
- ftp://patches.sgi.com/support/free/security/advisories/19980603-01-PX
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/180
- http://www.securityfocus.com/bid/134
- http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9808-083
- ftp://patches.sgi.com/support/free/security/advisories/19980603-01-PX
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/180
- http://www.securityfocus.com/bid/134
- http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9808-083
→ the Explorer · watch your stack · NVD