Description
NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network.
Products
- Microsoft Windows 95
- Microsoft Windows 95
- Microsoft windows 95_gold
- Microsoft windows 95_osr2.1
- Microsoft windows 95_osr2.5
- Microsoft windows 95_osr2
- Microsoft windows 95_sp1
- Microsoft Windows 95 SR2
- Microsoft Windows 98 Gold
- Microsoft windows 98_gold
- Microsoft Windows 98SE
- Microsoft windows 98_se
- Microsoft Windows ME
- Microsoft Windows ME
- Microsoft windows me_gold
- Microsoft Windows Millenium Edition SCD
Questions to Ask Vendors
- Can you confirm whether your systems are affected by CVE-2000-0980, and if so, what steps are you currently taking to mitigate this vulnerability?
- What is your estimated timeline for fully resolving CVE-2000-0980 in your products or services, and how will you communicate updates on this issue to us as your customer?
Recommended Actions
- Check out the advisory links provided below.
References