CVE-1999-0918: Input Validation
Denial of service in various Windows systems via malformed, fragmented IGMP packets.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Block or filter IGMP (Internet Group Management Protocol) traffic at network boundaries, routers, and firewalls; drop malformed or fragmented IGMP packets before they reach affected Windows hosts to mitigate the denial-of-service.
- Operational
Monitor networks and affected systems for malformed or fragmented IGMP packets and, if detected, isolate impacted hosts from the network until the traffic stops or further mitigation is applied.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0918?
CVE-1999-0918 has been classified as a high severity denial of service vulnerability.
How does CVE-1999-0918 impact affected systems?
CVE-1999-0918 can cause denial of service conditions by exploiting malformed, fragmented IGMP packets.
What versions of Windows are affected by CVE-1999-0918?
CVE-1999-0918 affects various versions of Windows, including Windows NT 4.0 and Windows 2000.
How do I fix CVE-1999-0918?
To mitigate CVE-1999-0918, it is recommended to apply any available security patches or updates from Microsoft.
Is there a workaround for CVE-1999-0918?
There are no official workarounds for CVE-1999-0918, so applying patches is the best option.