CVE-1999-0596: Critical severity Microsoft Windows NT vulnerability

Published Jan 1, 1999
·
Updated

A Windows NT log file has an inappropriate maximum size or retention period.

Affected Software

1 affected component
Microsoft Windows NT

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    Adjust the Windows NT event/log file maximum size and retention period to appropriate values to prevent excessive growth or inadequate retention. Configure these settings via the system's Event Viewer or central log management/group policy according to your organizational logging policy.

    Windows NT log file (Event Log) maximum_size / retention_period = set to appropriate values for your environment

Event History

Jan 1, 1999
CVE Published
05:00 AM
Data Sourced
05:00 AM
DescriptionWeakness
Data Sourced
05:00 AM
Severity
Data Sourced
via NVD·05:00 AM
DescriptionSeverity
Feb 4, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description

Frequently Asked Questions

1

Which systems should be reviewed for this issue?

Windows NT systems are affected when their log files are configured with an inappropriate maximum size or retention period. The provided data does not identify specific Windows NT versions, log types, or configuration values.

2

What level of attacker access is required?

An attacker does not need authentication and can exploit the issue remotely, according to the CVSS vector. The provided data does not describe the specific attack steps or required access to the affected logs.

3

What can be done if patching is not immediately possible?

Review Windows NT log file maximum-size and retention settings and correct configurations that are inappropriate for the environment. No vendor patch, workaround, or recommended setting is provided in the available data.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203