Vulnerabilities > CVE-1999-1499 - Unspecified vulnerability in ISC Bind 4.9/8.1

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
local
low complexity
isc
exploit available

Summary

named in ISC BIND 4.9 and 8.1 allows local users to destroy files via a symlink attack on (1) named_dump.db when root kills the process with a SIGINT, or (2) named.stats when SIGIOT is used.

Vulnerable Configurations

Part Description Count
Application
Isc
2

Exploit-Db

descriptionISC BIND 4.9.7 -T1B named SIGINT and SIGIOT symlink Vulnerability. CVE-1999-1499. Local exploit for linux platform
idEDB-ID:19072
last seen2016-02-02
modified1998-04-10
published1998-04-10
reporterJoe H
sourcehttps://www.exploit-db.com/download/19072/
titleISC BIND 4.9.7 -T1B named SIGINT and SIGIOT symlink Vulnerability