CVE-1999-1222

CVSS 2.0 Score 5.0 of 10 (medium)

Details

Published Dec 31, 1999
Updated: Oct 10, 2017

Summary

CVE-1999-1222 is a vulnerability affecting the Netbt.sys component in Windows NT 4.0. Malicious DNS servers can exploit this issue by supplying incorrect IP addresses during host name lookups. Specifically, returning 0.0.0.0 as the IP address will cause a denial of service (DoS) crash in the affected system. This vulnerability can be exploited remotely and poses a significant risk to systems relying on DNS for name resolution. It is recommended that affected systems be updated to address this issue and implement additional security measures to protect against untrusted DNS servers.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows NT

Affected Vendors

  • Microsoft