First published: Mon Mar 08 1999(Updated: )
Denial of service in SMTP applications such as Sendmail, when a remote attacker (e.g. spammer) uses many "RCPT TO" commands in the same connection.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sendmail |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0418 is classified as a denial of service vulnerability.
To fix CVE-1999-0418, it is recommended to update to the latest version of Sendmail that addresses this issue.
CVE-1999-0418 primarily affects SMTP applications such as Sendmail.
The impact of CVE-1999-0418 is that it allows a remote attacker to monopolize SMTP resources, potentially leading to service outages.
CVE-1999-0418 works by allowing a remote attacker to send numerous 'RCPT TO' commands within a single SMTP connection, exhausting server resources.