CVE-1999-0285: Critical severity Microsoft Windows NT vulnerability

Published Jan 1, 1999
·
Updated

Denial of service in telnet from the Windows NT Resource Kit, by opening then immediately closing a connection.

Affected Software

1 affected component
Microsoft Windows NT

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Remove

    Remove Windows NT Resource Kit telnet from your environment.

    Uninstall or remove the telnet component from the Windows NT Resource Kit on systems where it is not required.

  2. Configuration

    Disable the telnet service/daemon from the Windows NT Resource Kit on affected hosts to prevent exploitation by rapid open-and-close connections.

    Windows NT Resource Kit telnet telnet service = disabled
  3. Compensating control

    Block or filter TCP port 23 (Telnet) at network perimeter firewalls/ACLs or restrict Telnet access to trusted management networks/IP addresses to mitigate remote exploitation.

Event History

Jan 1, 1999
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Feb 4, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-1999-0285?

CVE-1999-0285 is classified as a Denial of Service vulnerability.

2

How do I fix CVE-1999-0285?

To mitigate CVE-1999-0285, ensure that the Windows NT Resource Kit is updated to the latest available version.

3

What software is affected by CVE-1999-0285?

CVE-1999-0285 affects Microsoft Windows NT systems when using the telnet service.

4

What type of attack does CVE-1999-0285 describe?

CVE-1999-0285 describes an attack that involves opening and immediately closing a telnet connection to cause a denial of service.

5

Is CVE-1999-0285 still relevant today?

While CVE-1999-0285 is an older vulnerability, it may still be relevant for legacy systems running Windows NT.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203