First published: Tue Jan 09 2007(Updated: )
Unspecified vulnerability in the DECnet-Plus 7.3-2 feature in DECnet/OSI 7.3-2 for OpenVMS ALPHA, and the DECnet-Plus 7.3 feature in DECnet/OSI 7.3 for OpenVMS VAX, allows attackers to obtain "unintended privileged access to data and system resources" via unspecified vectors, related to (1) [SYSEXE]CTF$UI.EXE, (2) [SYSMSG]CTF$MESSAGES.EXE, (3) [SYSHLP]CTF$HELP.HLB, and (4) [SYSMGR]CTF$STARTUP.COM.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenVMS | =7.3 | |
OpenVMS | =7.3_2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2007-0139 is considered to be significant due to the potential for unintended privileged access to data and system resources.
To fix CVE-2007-0139, it is recommended to apply the latest security patches provided by HP for affected versions of OpenVMS.
CVE-2007-0139 affects DECnet/OSI 7.3-2 for OpenVMS ALPHA and VAX platforms running versions 7.3 and 7.3_2.
CVE-2007-0139 allows attackers to gain unintended privileged access to sensitive data and system resources.
The attack vectors for CVE-2007-0139 remain unspecified, making detailed mitigation strategies challenging.