CVE-1999-0987: Critical severity Microsoft Windows NT vulnerability
Windows NT does not properly download a system policy if the domain user logs into the domain with a space at the end of the domain name.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Ensure domain names entered at logon do not include trailing spaces. Update login procedures, saved-credential entries, and any logon scripts or tools to trim or reject trailing spaces on the domain name field.
Microsoft Windows NT logon/domain handling domain_name_trailing_space_handling = trim or reject trailing spaces - Operational
For any user who logged in with a trailing space in the domain name, remove the trailing space from the saved credential or re-enter the domain name without the trailing space and re-login so the system policy can be downloaded correctly.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0987?
CVE-1999-0987 has been classified as a moderate severity vulnerability.
How do I fix CVE-1999-0987?
To fix CVE-1999-0987, ensure that users do not log into the domain with a space at the end of the domain name.
What impact does CVE-1999-0987 have on my system?
CVE-1999-0987 can prevent proper system policy downloads, potentially impacting system configuration and security.
Is CVE-1999-0987 still a concern in current systems?
CVE-1999-0987 primarily affects legacy versions of Windows NT, which are rarely in use today.
Who is affected by CVE-1999-0987?
Domain users logging into a Windows NT environment with an incorrectly formatted domain name are affected by CVE-1999-0987.