CVE-1999-1387: Medium severity Microsoft Windows NT vulnerability
Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packets, such as those generated by a Linux smbmount command that was compiled on the Linux 2.0.29 kernel but executed on Linux 2.0.25.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
If Windows NT systems do not require SMB/file-sharing, disable the SMB/NetBIOS file-sharing service to prevent remote attackers from causing a crash via malformed SMB inputs/packets.
Microsoft Windows NT SMB/NetBIOS file-sharing service = disabled (if not required) - Compensating control
Restrict access to Windows file-sharing (SMB) services to trusted hosts only using network perimeter or host-based firewalls; block or filter SMB-related traffic from untrusted networks to mitigate remote crashes from malformed packets.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1387?
CVE-1999-1387 has been classified with a high severity due to its ability to cause a denial of service on affected systems.
How do I fix CVE-1999-1387?
To mitigate CVE-1999-1387, it is recommended to upgrade to a later version of Windows NT that addresses this vulnerability.
Which versions of Windows are affected by CVE-1999-1387?
CVE-1999-1387 specifically affects Windows NT 4.0 Service Pack 2.
What type of attack does CVE-1999-1387 facilitate?
CVE-1999-1387 facilitates a denial of service attack that can crash Windows NT systems.
When was CVE-1999-1387 discovered?
CVE-1999-1387 was discovered in the late 1990s, highlighting weaknesses in early Windows NT versions.