CVE-1999-1364: Low severity Microsoft Windows NT vulnerability
Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Restrict and limit local user access to affected Windows NT systems. Prevent untrusted or unprivileged local accounts from logging on or executing code on these machines (remove unnecessary interactive logon rights, restrict membership in Administrators/Users groups, and isolate affected hosts from untrusted users/networks) to mitigate the risk of a local-user–triggered crash via GetThreadContext/SetThreadContext.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1364?
CVE-1999-1364 has a critical severity level as it allows local users to crash the system.
How do I fix CVE-1999-1364?
To fix CVE-1999-1364, it is recommended to upgrade from Windows NT 4.0 to a newer, more secure operating system.
Who is affected by CVE-1999-1364?
CVE-1999-1364 affects users running Windows NT 4.0 operating system.
What type of vulnerability is CVE-1999-1364?
CVE-1999-1364 is a denial of service vulnerability that can crash the system.
Can CVE-1999-1364 be exploited remotely?
CVE-1999-1364 cannot be exploited remotely as it requires local access to the system.