PT-2012-4622 · Hewlett Packard · Openvms
Published
2012-12-13
·
Updated
2019-10-09
·
CVE-2012-3277
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
HP OpenVMS versions 7.3-2 through 8.4 on the Alpha platform
HP OpenVMS versions 8.3 through 8.4 on the Itanium platform
Description
The issue is related to the improper implementation of the LOGIN and ACME SERVER ACMELOGIN programs, which allows remote attackers to cause a denial of service via unspecified vectors.
Recommendations
For HP OpenVMS versions 7.3-2 through 8.4 on the Alpha platform, consider restricting access to the LOGIN and ACME SERVER ACMELOGIN programs until a proper fix is available.
For HP OpenVMS versions 8.3 through 8.4 on the Itanium platform, consider restricting access to the LOGIN and ACME SERVER ACMELOGIN programs until a proper fix is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Openvms