CVE-1999-0797: Low severity Sun SunOS vulnerability
NIS finger allows an attacker to conduct a denial of service via a large number of finger requests, resulting in a large number of NIS queries.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
SunOS finger/NIS finger servicefrom your environment.Uninstall or remove the finger/NIS finger service from systems where it is not required.
- Configuration
Disable the finger service or NIS finger interface on affected SunOS hosts to prevent processing of remote finger requests that trigger NIS queries.
SunOS NIS finger enabled = false - Compensating control
Restrict network access to the finger service at the perimeter and host-based firewalls; only allow trusted management hosts and/or implement rate-limiting on incoming finger requests to prevent high-volume query floods.
- Operational
Monitor logs for unusual spikes in finger requests or NIS query volume, block or blacklist offending IPs, and investigate potentially impacted hosts; apply the disable/remove actions as part of remediation.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0797?
CVE-1999-0797 is classified as a medium severity vulnerability due to its potential to cause denial of service.
How do I fix CVE-1999-0797?
To fix CVE-1999-0797, you should implement rate limiting on finger requests and restrict access to the NIS service.
Which systems are affected by CVE-1999-0797?
CVE-1999-0797 affects SunOS systems that support the Network Information Service (NIS) and are capable of responding to finger requests.
What type of attack is facilitated by CVE-1999-0797?
CVE-1999-0797 facilitates denial of service attacks through an overwhelming number of finger requests leading to excessive NIS queries.
Can CVE-1999-0797 be exploited remotely?
Yes, CVE-1999-0797 can be exploited remotely if the NIS service is accessible over the network.