CVE-1999-0851: Low severity IBM AIX vulnerability
Denial of service in BIND named via naptr.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Restrict network access to BIND 'named' (UDP/TCP port 53) to trusted IPs and apply firewall/ACL rules or rate-limiting to block or limit NAPTR queries to mitigate the denial-of-service until a vendor fix is available.
- Operational
Monitor vendor advisories for fixes for BIND on the affected platforms (IBM AIX, SCO OpenServer, SunOS, Xinuos UnixWare) and apply vendor-supplied patches as soon as they are released. After applying patches, restart named and verify normal operation.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0851?
CVE-1999-0851 has a severity level classified as a denial of service vulnerability.
Which software versions are affected by CVE-1999-0851?
CVE-1999-0851 affects IBM AIX 4.3, Xinuos OpenServer 5, Xinuos UnixWare 2 and 7, and Sun SunOS 5.7.
How do I fix CVE-1999-0851?
To fix CVE-1999-0851, it is recommended to apply the latest patches or updates from the respective software vendors.
What type of attack does CVE-1999-0851 enable?
CVE-1999-0851 enables a denial of service attack that can disrupt the functionality of the BIND named service.
Is CVE-1999-0851 still relevant today?
While CVE-1999-0851 was identified in 1999, it remains a reference for understanding historical vulnerabilities in DNS services.