CVE-1999-1196: Medium severity Hummingbird Exceed vulnerability
Hummingbird Exceed X version 5 allows remote attackers to cause a denial of service via malformed data to port 6000.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Hummingbird Exceed X version 5from your environment.Uninstall Hummingbird Exceed X version 5 from hosts where it is not required, or replace it with an unaffected product, until a vendor-supplied fix is provided.
- Compensating control
Block or restrict network access to port 6000 at the perimeter and host-based firewalls (only allow trusted management hosts). Prevent external access to TCP/UDP port 6000 to mitigate exploitation.
- Operational
On systems running Hummingbird Exceed X version 5, stop or disable the service/process that listens on port 6000 (X11) until an official vendor fix is available.
- Operational
Monitor the vendor for advisories and apply any vendor-supplied updates or patches for Hummingbird Exceed X as soon as they are released.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1196?
CVE-1999-1196 is considered a denial of service vulnerability affecting Hummingbird Exceed X version 5, which can be exploited remotely.
How do I fix CVE-1999-1196?
To fix CVE-1999-1196, you should update Hummingbird Exceed X to a more secure version that does not have this vulnerability.
What versions of Hummingbird Exceed are affected by CVE-1999-1196?
CVE-1999-1196 affects Hummingbird Exceed X version 5.0.
Can CVE-1999-1196 be exploited remotely?
Yes, CVE-1999-1196 can be exploited remotely by sending malformed data to port 6000.
What kind of attack does CVE-1999-1196 facilitate?
CVE-1999-1196 facilitates a denial of service attack, which disrupts service access for legitimate users.