CVE-1999-1463

Windows NT < 4.0 - Denial of Service via Fragmented IP Packet Reassembly

Title source: llm
STIX 2.1

Description

Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial of service (crash) by sending improperly fragmented IP packets without the first fragment, which the TCP/IP stack incorrectly reassembles into a valid session.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/528
Exploit, Patch, Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/7219

Scores

EPSS 0.1631
EPSS Percentile 96.6%

Details

Status published
Products (1)
microsoft/windows_nt < 4.0
Published Jul 10, 1997
Tracked Since Feb 18, 2026