
CVE-1999-0815
https://notcve.org/view.php?id=CVE-1999-0815
31 Dec 1999 — Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries. • http://support.microsoft.com/support/kb/articles/q196/2/70.asp •

CVE-1999-1127
https://notcve.org/view.php?id=CVE-1999-1127
31 Dec 1999 — Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka the "Named Pipes Over RPC" vulnerability. • http://support.microsoft.com/support/kb/articles/Q195/7/33.asp • CWE-772: Missing Release of Resource after Effective Lifetime •

CVE-1999-1132
https://notcve.org/view.php?id=CVE-1999-1132
31 Dec 1999 — Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs. • http://marc.info/?l=bugtraq&m=90763508011966&w=2 •

CVE-1999-1157
https://notcve.org/view.php?id=CVE-1999-1157
31 Dec 1999 — Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an ICMP Subnet Mask Address Request packet, when certain multiple IP addresses are bound to the same network interface. • http://support.microsoft.com/support/kb/articles/Q192/7/74.ASP •

CVE-1999-1222
https://notcve.org/view.php?id=CVE-1999-1222
31 Dec 1999 — Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.0 as the IP address for a DNS host name lookup. • http://support.microsoft.com/support/kb/articles/Q188/5/71.ASP •

CVE-1999-1294
https://notcve.org/view.php?id=CVE-1999-1294
31 Dec 1999 — Office Shortcut Bar (OSB) in Windows 3.51 enables backup and restore permissions, which are inherited by programs such as File Manager that are started from the Shortcut Bar, which could allow local users to read folders for which they do not have permission. • http://support.microsoft.com/support/kb/articles/q146/6/04.asp •

CVE-1999-1316
https://notcve.org/view.php?id=CVE-1999-1316
31 Dec 1999 — Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easier for an attacker to guess. • http://support.microsoft.com/support/kb/articles/Q247/9/75.asp •

CVE-1999-1317
https://notcve.org/view.php?id=CVE-1999-1317
31 Dec 1999 — Windows NT 4.0 SP4 and earlier allows local users to gain privileges by modifying the symbolic link table in the \?? object folder using a different case letter (upper or lower) to point to a different device. • http://marc.info/?l=ntbugtraq&m=92127046701349&w=2 •

CVE-1999-1358
https://notcve.org/view.php?id=CVE-1999-1358
31 Dec 1999 — When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by the policy, possibly by changing the policy file to be read-only. • http://support.microsoft.com/support/kb/articles/q157/6/73.asp •

CVE-1999-1359
https://notcve.org/view.php?id=CVE-1999-1359
31 Dec 1999 — When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies. • http://support.microsoft.com/support/kb/articles/q163/8/75.asp •