HP OpenVMS unknown denial of service
| openvms-unknown-dos (22939) |
Description:
HP OpenVMS Alpha is vulnerable to an unspecified denial of service. A local or remote attacker could exploit this vulnerability to cause the system to crash.
Platforms Affected:
- HP, OpenVMS Alpha 7.3-2
Remedy:
Apply update kit VMS732_MP-V0100, available from Hewlett-Packard. See References.
Consequences:
Denial of Service
References:
- Hewlett-Packard Company Security Bulletin SSRT051029 rev.0 SSRT051029, HP OpenVMS Local Denial of Service (DoS) at http://www1.itrc.hp.com/service/cki/docDisplay.do?admit=-682735245+1131031637086+28353475&docId=HPSBOV01239.
- VMS732_MP-V0100, HP ECO SUMMARY INFORMATION at ftp://ftp.itrc.hp.com/openvms_patches/alpha/V7.3-2/VMS732_MP-V0100.txt.
- BID-15261: OpenVMS Unspecified Local Denial of Service Vulnerability
- BID-19008: OpenVMS Unspecified Local Denial of Service Vulnerability
- CVE-2005-3476: Unspecified vulnerability in HP OpenVMS Integrity 8.2-1 and 8.2, and OpenVMS Alpha 7.3-2 and 8.2, allows local users to cause a denial of service.
- CVE-2006-3686: Unspecified vulnerability in [SYSEXE]SMPUTIL.EXE in HP OpenVMS 7.3-2 allows local users and remote users to cause a denial of service (crash).
- OSVDB ID: 20487: OpenVMS Unspecified Local DoS
- SA17402: HP OpenVMS Unspecified Denial of Service Vulnerability
- SA21067: OpenVMS Unspecified Local Denial of Service
- SECTRACK ID: 1015128: HP OpenVMS Lets Local Users Crash the System
- SECTRACK ID: 1016509: OpenVMS Unspecified Flaw Lets Local or Remote Users Deny Service
- VUPEN/ADV-2005-2275: HP OpenVMS Unspecified Local Denial of Service Vulnerability
- VUPEN/ADV-2006-2830: HP OpenVMS Unspecified Request Handling Remote Denial of Service Vulnerability
Reported:
Nov 02, 2005
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
For corrections or additions please email xforce@iss.net
