First published: Fri May 18 2012(Updated: )
The ACMELOGIN implementation in HP OpenVMS 8.3 and 8.4 on the Alpha platform, and 8.3, 8.3-1H1, and 8.4 on the Itanium platform, when the SYS$ACM system service is enabled, allows local users to gain privileges via unspecified vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
OpenVMS | =8.3 | |
OpenVMS | =8.3 | |
OpenVMS | =8.3-1h1 | |
OpenVMS | =8.4 | |
OpenVMS | =8.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2010 is classified as a high-severity vulnerability due to its potential to allow local users to gain elevated privileges.
To mitigate CVE-2012-2010, it is recommended to disable the SYS$ACM system service if it is not required for your environment.
CVE-2012-2010 affects local users of HP OpenVMS versions 8.3 and 8.4 on both Alpha and Itanium platforms.
The potential impact of CVE-2012-2010 includes unauthorized privilege escalation by local users.
CVE-2012-2010 was published in 2012, highlighting vulnerabilities in the HP OpenVMS operating system.