Vulnerability Name: | CVE-1999-1581 (CCN-8231) | ||||||||
Assigned: | 1997-12-23 | ||||||||
Published: | 1997-12-23 | ||||||||
Updated: | 2017-07-11 | ||||||||
Summary: | Memory leak in Simple Network Management Protocol (SNMP) agent (snmp.exe) for Windows NT 4.0 before Service Pack 4 allows remote attackers to cause a denial of service (memory consumption) via a large number of SNMP packets with Object Identifiers (OIDs) that cannot be decoded. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: MITRE Type: CNA CVE-1999-1581 Source: MSKB Type: UNKNOWN Q178381 Source: CCN Type: US-CERT VU#4923 Windows NT SNMP agent leaks memory Source: CERT-VN Type: US Government Resource VU#4923 Source: CCN Type: Microsoft Product Support Services Windows NT Service Packs Source: CCN Type: OSVDB ID: 19006 Microsoft Windows NT snmp.exe Malformed OID Packet Saturation DoS Source: XF Type: UNKNOWN winnt-snmp-oid-memory-leak(8231) Source: XF Type: UNKNOWN winnt-snmp-oid-memory-leak(8231) Source: CCN Type: Microsoft Knowledge Base Article 152734 How to Obtain the Latest Windows NT 4.0 Service Pack (Q152734) Source: CCN Type: Microsoft Knowledge Base Article 178381 SNMP Leaks Memory If the OID Cannot Be Decoded (Q178381) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |