First published: Tue Dec 16 1997(Updated: )
A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SCO OpenLinux Server | =2.0 | |
HPE HP-UX | ||
Microsoft Windows 95 | =0a | |
Microsoft Windows NT | =4.0 | |
Microsoft Windows NT | =4.0-sp1 | |
Microsoft Windows NT | =4.0-sp2 | |
Sun SunOS | =4.1.3u1 | |
Sun SunOS | =4.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0104 is classified as a high severity vulnerability due to its potential to cause denial of service.
CVE-1999-0104 exploits the Teardrop-2 attack vector to disrupt the normal functioning of affected systems by sending fragmented packets.
CVE-1999-0104 affects various systems including SCO OpenLinux Server 2.0, HPE HP-UX, Microsoft Windows 95, Microsoft Windows NT versions 4.0, and Sun SunOS versions 4.1.3u1 and 4.1.4.
Mitigation for CVE-1999-0104 may include applying relevant patches, disabling IP fragment recognition, or deploying an intrusion detection system.
While specific patches may vary by vendor, users should check with their respective software providers for updates regarding CVE-1999-0104.