CVE-1999-1057: Medium severity digital vms vulnerability
VMS 4.0 through 5.3 allows local users to gain privileges via the ANALYZE/PROCESSDUMP dcl command.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Digital OpenVMS ANALYZE/PROCESS_DUMPfrom your environment.If ANALYZE/PROCESS_DUMP is not required, uninstall or remove the ANALYZE utility/component to eliminate the vulnerable functionality.
- Configuration
Disable the ANALYZE/PROCESS_DUMP DCL command or remove execute permission so local users cannot run it.
OpenVMS (DCL ANALYZE utility) ANALYZE/PROCESS_DUMP enabled = false - Compensating control
Restrict execution of ANALYZE/PROCESS_DUMP to trusted administrative accounts only using file protections, ACLs, or access controls; limit local user privileges and console access to reduce risk of local privilege escalation.
- Operational
Audit local accounts for unauthorized use and review system logs for signs of exploitation; if compromise is suspected, perform account and credential rotation for affected privileged accounts.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1057?
CVE-1999-1057 is considered a medium severity vulnerability.
How do I fix CVE-1999-1057?
To mitigate CVE-1999-1057, restrict the use of the ANALYZE/PROCESS_DUMP command to authorized users only.
Who is affected by CVE-1999-1057?
CVE-1999-1057 affects local users of VMS versions 4.0 through 5.3.
What type of vulnerability is CVE-1999-1057?
CVE-1999-1057 is a privilege escalation vulnerability.
What versions of VMS are vulnerable to CVE-1999-1057?
VMS versions 4.0 through 5.3 are vulnerable to CVE-1999-1057.