CVE-1999-1463: Medium severity Microsoft Windows NT vulnerability
Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial of service (crash) by sending improperly fragmented IP packets without the first fragment, which the TCP/IP stack incorrectly reassembles into a valid session.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Microsoft Windows NT 4.0to a version that resolves this vulnerability.Fixed in SP3
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1463?
CVE-1999-1463 is classified as a critical vulnerability due to its ability to bypass firewall restrictions and potentially cause a denial of service.
How do I fix CVE-1999-1463?
To mitigate CVE-1999-1463, it is recommended to upgrade to Windows NT 4.0 Service Pack 3 or later.
What impact does CVE-1999-1463 have on Windows NT 4.0?
CVE-1999-1463 allows remote attackers to exploit improperly fragmented IP packets to disrupt service or bypass firewall protections.
Who is affected by CVE-1999-1463?
Any organization or individual using Windows NT 4.0 prior to Service Pack 3 is vulnerable to CVE-1999-1463.
Can CVE-1999-1463 be exploited remotely?
Yes, CVE-1999-1463 can be exploited remotely, enabling attackers to potentially gain unauthorized access or cause service interruptions.