5
CVSSv2

CVE-1999-1109

Published: 22/12/1999 Updated: 18/10/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Sendmail prior to 8.10.0 allows remote malicious users to cause a denial of service by sending a series of ETRN commands then disconnecting from the server, while Sendmail continues to process the commands after the connection has been terminated.

Vulnerable Product Search on Vulmon Subscribe to Product

sendmail sendmail

Exploits

source: wwwsecurityfocuscom/bid/904/info There is a low-bandwidth dos vulnerability in Sendmail When a client connects to the sendmail smtpd and sends an ETRN command to the server, the server fork()s and sleeps for 5 seconds If many ETRN commands are sent to a server, it is possible to exhaust system resources and cause a denial of ser ...