CVE-1999-0274: Medium severity Microsoft Windows NT vulnerability
Denial of service in Windows NT DNS servers through malicious packet which contains a response to a query that wasn't made.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Block or filter unsolicited DNS response packets at the network perimeter and restrict access to the Windows NT DNS server to trusted IP addresses/networks. This prevents malicious packets that contain responses to queries that were not made from reaching the DNS service.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0274?
CVE-1999-0274 has a medium severity rating due to its potential to cause denial of service in Windows NT DNS servers.
How do I fix CVE-1999-0274?
To fix CVE-1999-0274, it is recommended to update your Windows NT to the latest service pack or apply relevant patches provided by Microsoft.
Which systems are affected by CVE-1999-0274?
CVE-1999-0274 affects Microsoft Windows NT 4.0 and its service packs, specifically 4.0-sp1 and 4.0-sp2.
What type of attack does CVE-1999-0274 enable?
CVE-1999-0274 enables a denial of service attack through malicious DNS packets that confuse the DNS server.
Is CVE-1999-0274 still a threat today?
CVE-1999-0274 is less of a threat today due to the end of support for Windows NT and the migration to more secure operating systems.