OpenVMS loginout Vulnerability
BID:161
Info
OpenVMS loginout Vulnerability
| Bugtraq ID: | 161 |
| Class: | Access Validation Error |
| CVE: |
CVE-1999-1558 |
| Remote: | No |
| Local: | No |
| Published: | Jul 16 1998 12:00AM |
| Updated: | Jul 11 2009 12:16AM |
| Credit: | This vulnerability was posted to the Bugtraq mailing list as a CIAC <[email protected]> advisory on July 16, 1998. |
| Vulnerable: |
Digital OpenVMS AXP 7.1 Digital OpenVMS 7.1 |
| Not Vulnerable: | |
Discussion
OpenVMS loginout Vulnerability
A vulnerability exists in loginout under OpenVMS versions up to and including 7.1, on both the VAX and Alpha AXP architectures. Under certain circumstances, this vulnerability could result in unauthorized access.
A vulnerability exists in loginout under OpenVMS versions up to and including 7.1, on both the VAX and Alpha AXP architectures. Under certain circumstances, this vulnerability could result in unauthorized access.
Exploit / POC
OpenVMS loginout Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
OpenVMS loginout Vulnerability
Solution:
Digital recommends upgrading to OpenVMS version 7.1, and installing appropriate patches. These are available at http://www1.service.digital.com/patches/
Solution:
Digital recommends upgrading to OpenVMS version 7.1, and installing appropriate patches. These are available at http://www1.service.digital.com/patches/
References
OpenVMS loginout Vulnerability
References:
References: