CVE-1999-0749: Buffer Overflow
Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Microsoft Telnet client (Windows 95/98)from your environment.Uninstall or disable the Microsoft Telnet client on Windows 95 and Windows 98 systems to eliminate exposure to the malformed-argument buffer overflow.
- Configuration
Disable the Telnet client on affected systems (stop the Telnet client application and prevent its use) until a vendor fix is available.
Microsoft Windows 95/98 Telnet client telnet_client_enabled = false - Compensating control
Block or restrict Telnet traffic (TCP port 23) at the network perimeter and internal firewalls; allow Telnet only to trusted hosts or via secure alternatives to prevent clients from connecting to potentially malicious Telnet servers.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0749?
CVE-1999-0749 has been classified as a high-severity vulnerability due to its potential for remote code execution.
How do I fix CVE-1999-0749?
To fix CVE-1999-0749, users should upgrade to a later version of Windows or apply relevant updates provided by Microsoft.
What systems are affected by CVE-1999-0749?
CVE-1999-0749 affects Microsoft Windows 95 and Windows 98 specifically.
What is the nature of the vulnerability in CVE-1999-0749?
CVE-1999-0749 is a buffer overflow vulnerability caused by a malformed Telnet argument.
Can CVE-1999-0749 be exploited remotely?
Yes, CVE-1999-0749 can be exploited remotely by an attacker through the Telnet protocol.