CVE-1999-0009

Exp

Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.

Published: 1998-04-08 Last update: 2026-06-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-1999-0009 is rated High Exploit Risk (83.9/100): CVSS Critical severity, with high exploitation likelihood (EPSS 18.30%, 97th percentile). Core evidence: 2 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Public exploit references (Exploit-DB) for CVE-1999-0009

EDB-ID Source Kind Published Link
19112 exploit_db edb 1998-04-08 Exploit-DB ↗
19111 exploit_db edb 1998-04-08 Exploit-DB ↗

Exploit prediction scoring system (EPSS) score for CVE-1999-0009

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 80.32% 18.30% -62.02%
2 2026-02-09 80.48% 80.32% -0.16%
3 2025-04-27 80.48%

Full EPSS history (9 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-1999-0009

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
10.0 2.0 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:C)
Complete confidentiality impact.
Integrity impact (I:C)
Complete integrity impact.
Availability impact (A:C)
Complete availability impact.
10.0 10.0 [email protected]

Weakness enumeration for CVE-1999-0009

OS Trackers for CVE-1999-0009

vendor priority summary link
alpine CVE-1999-0009: no source package rows; 0 state rows across 0 repos (none); fixed 0, open 0. https://security.alpinelinux.org/vuln/CVE-1999-0009

Affected software / configurations for CVE-1999-0009

Vendor Product Version Raw CPE
data_general dg_ux 5.4_3.0 cpe:2.3:a:data_general:dg_ux:5.4_3.0:*:*:*:*:*:*:*
data_general dg_ux 5.4_3.1 cpe:2.3:a:data_general:dg_ux:5.4_3.1:*:*:*:*:*:*:*
data_general dg_ux 5.4_4.1 cpe:2.3:a:data_general:dg_ux:5.4_4.1:*:*:*:*:*:*:*
data_general dg_ux 5.4_4.11 cpe:2.3:a:data_general:dg_ux:5.4_4.11:*:*:*:*:*:*:*
isc bind 4.9.6 cpe:2.3:a:isc:bind:4.9.6:*:*:*:*:*:*:*
isc bind 8.1 cpe:2.3:a:isc:bind:8.1:*:*:*:*:*:*:*
isc bind 8.1.1 cpe:2.3:a:isc:bind:8.1.1:*:*:*:*:*:*:*
sgi irix 3.2 cpe:2.3:o:sgi:irix:3.2:*:*:*:*:*:*:*
sgi irix 3.3 cpe:2.3:o:sgi:irix:3.3:*:*:*:*:*:*:*
sgi irix 3.3.1 cpe:2.3:o:sgi:irix:3.3.1:*:*:*:*:*:*:*
sgi irix 3.3.2 cpe:2.3:o:sgi:irix:3.3.2:*:*:*:*:*:*:*
sgi irix 3.3.3 cpe:2.3:o:sgi:irix:3.3.3:*:*:*:*:*:*:*
sgi irix 4.0 cpe:2.3:o:sgi:irix:4.0:*:*:*:*:*:*:*
sgi irix 4.0.1 cpe:2.3:o:sgi:irix:4.0.1:*:*:*:*:*:*:*
sgi irix 4.0.1t cpe:2.3:o:sgi:irix:4.0.1t:*:*:*:*:*:*:*
sgi irix 4.0.2 cpe:2.3:o:sgi:irix:4.0.2:*:*:*:*:*:*:*
sgi irix 4.0.3 cpe:2.3:o:sgi:irix:4.0.3:*:*:*:*:*:*:*
sgi irix 4.0.4 cpe:2.3:o:sgi:irix:4.0.4:*:*:*:*:*:*:*
sgi irix 4.0.4b cpe:2.3:o:sgi:irix:4.0.4b:*:*:*:*:*:*:*
sgi irix 4.0.4t cpe:2.3:o:sgi:irix:4.0.4t:*:*:*:*:*:*:*
sgi irix 4.0.5 cpe:2.3:o:sgi:irix:4.0.5:*:*:*:*:*:*:*
sgi irix 4.0.5_iop cpe:2.3:o:sgi:irix:4.0.5_iop:*:*:*:*:*:*:*
sgi irix 4.0.5_ipr cpe:2.3:o:sgi:irix:4.0.5_ipr:*:*:*:*:*:*:*
sgi irix 4.0.5a cpe:2.3:o:sgi:irix:4.0.5a:*:*:*:*:*:*:*
sgi irix 4.0.5d cpe:2.3:o:sgi:irix:4.0.5d:*:*:*:*:*:*:*
sgi irix 4.0.5e cpe:2.3:o:sgi:irix:4.0.5e:*:*:*:*:*:*:*
sgi irix 4.0.5f cpe:2.3:o:sgi:irix:4.0.5f:*:*:*:*:*:*:*
sgi irix 4.0.5g cpe:2.3:o:sgi:irix:4.0.5g:*:*:*:*:*:*:*
sgi irix 4.0.5h cpe:2.3:o:sgi:irix:4.0.5h:*:*:*:*:*:*:*
sgi irix 5.0 cpe:2.3:o:sgi:irix:5.0:*:*:*:*:*:*:*
sgi irix 5.0.1 cpe:2.3:o:sgi:irix:5.0.1:*:*:*:*:*:*:*
sgi irix 5.1 cpe:2.3:o:sgi:irix:5.1:*:*:*:*:*:*:*
sgi irix 5.1.1 cpe:2.3:o:sgi:irix:5.1.1:*:*:*:*:*:*:*
sgi irix 5.2 cpe:2.3:o:sgi:irix:5.2:*:*:*:*:*:*:*
sgi irix 5.3 cpe:2.3:o:sgi:irix:5.3:*:*:*:*:*:*:*
sgi irix 6.0 cpe:2.3:o:sgi:irix:6.0:*:*:*:*:*:*:*
sgi irix 6.1 cpe:2.3:o:sgi:irix:6.1:*:*:*:*:*:*:*
sgi irix 6.2 cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*
sgi irix 6.3 cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*
bsdi bsd_os 2.0 cpe:2.3:o:bsdi:bsd_os:2.0:*:*:*:*:*:*:*
bsdi bsd_os 2.0.1 cpe:2.3:o:bsdi:bsd_os:2.0.1:*:*:*:*:*:*:*
bsdi bsd_os 2.1 cpe:2.3:o:bsdi:bsd_os:2.1:*:*:*:*:*:*:*
caldera openlinux 1.0 cpe:2.3:o:caldera:openlinux:1.0:*:*:*:*:*:*:*
ibm aix 4.1 cpe:2.3:o:ibm:aix:4.1:*:*:*:*:*:*:*
ibm aix 4.1.1 cpe:2.3:o:ibm:aix:4.1.1:*:*:*:*:*:*:*
ibm aix 4.1.2 cpe:2.3:o:ibm:aix:4.1.2:*:*:*:*:*:*:*
ibm aix 4.1.3 cpe:2.3:o:ibm:aix:4.1.3:*:*:*:*:*:*:*
ibm aix 4.1.4 cpe:2.3:o:ibm:aix:4.1.4:*:*:*:*:*:*:*
ibm aix 4.1.5 cpe:2.3:o:ibm:aix:4.1.5:*:*:*:*:*:*:*
ibm aix 4.2 cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*
ibm aix 4.2.1 cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*
ibm aix 4.3 cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*
nec asl_ux_4800 64 cpe:2.3:o:nec:asl_ux_4800:64:*:*:*:*:*:*:*
netbsd netbsd 1.0 cpe:2.3:o:netbsd:netbsd:1.0:*:*:*:*:*:*:*
netbsd netbsd 1.1 cpe:2.3:o:netbsd:netbsd:1.1:*:*:*:*:*:*:*
netbsd netbsd 1.2 cpe:2.3:o:netbsd:netbsd:1.2:*:*:*:*:*:*:*
netbsd netbsd 1.2.1 cpe:2.3:o:netbsd:netbsd:1.2.1:*:*:*:*:*:*:*
netbsd netbsd 1.3 cpe:2.3:o:netbsd:netbsd:1.3:*:*:*:*:*:*:*
netbsd netbsd 1.3.1 cpe:2.3:o:netbsd:netbsd:1.3.1:*:*:*:*:*:*:*
redhat linux 4.0 cpe:2.3:o:redhat:linux:4.0:*:*:*:*:*:*:*
redhat linux 4.1 cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*
redhat linux 4.2 cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*
redhat linux 5.0 cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*
sco open_desktop 3.0 cpe:2.3:o:sco:open_desktop:3.0:*:*:*:*:*:*:*
sco open_desktop 5.0 cpe:2.3:o:sco:open_desktop:5.0:*:*:*:*:*:*:*
sco unixware 2.1 cpe:2.3:o:sco:unixware:2.1:*:*:*:*:*:*:*
sco unixware 7.0 cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*
sun solaris 2.5 cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*
sun solaris 2.5.1 cpe:2.3:o:sun:solaris:2.5.1:*:ppc:*:*:*:*:*
sun solaris 2.5.1 cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*
sun solaris 2.6 cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*
sun sunos cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*
sun sunos 5.3 cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*
sun sunos 5.4 cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*
sun sunos 5.5 cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*
sun sunos 5.5.1 cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*

References for CVE-1999-0009

cvelogic Threat Intelligence