CVE-1999-0014: High severity CDE CDE vulnerability
Unauthorized privileged access or denial of service via dtappgather program in CDE.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
dtappgather (CDE)from your environment.Uninstall or remove the dtappgather program from CDE systems if it is not required.
- Configuration
Disable or stop the dtappgather program/service on affected CDE hosts to prevent unauthorized privileged access or denial-of-service until a vendor fix is available.
dtappgather (CDE) enabled = false - Compensating control
Restrict network and management access to systems running dtappgather using firewalls, ACLs, or network segmentation so only trusted administrative hosts can reach the service; isolate affected hosts where feasible.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0014?
CVE-1999-0014 has a high severity level due to its potential for unauthorized privileged access or denial of service.
How do I fix CVE-1999-0014?
To fix CVE-1999-0014, apply the latest patches and updates provided for the affected versions of CDE or related systems.
What systems are affected by CVE-1999-0014?
CVE-1999-0014 affects various versions of the Common Desktop Environment (CDE) and different operating systems including IBM AIX and HPE HP-UX.
What kind of vulnerabilities does CVE-1999-0014 exploit?
CVE-1999-0014 exploits vulnerabilities associated with the dtappgather program allowing unauthorized access or service disruption.
Is there a workaround for CVE-1999-0014?
Disabling the dtappgather program can serve as a temporary workaround for CVE-1999-0014 until a proper patch is applied.