First published: Thu Dec 13 2012(Updated: )
HP OpenVMS 8.3, 8.3-1H1, and 8.4 on the Itanium platform and 7.3-2, 8.2, 8.3, and 8.4 on the Alpha platform does not properly implement the LOGIN and ACME_SERVER ACMELOGIN programs, which allows remote attackers to cause a denial of service via unspecified vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
OpenVMS | =7.3-2 | |
OpenVMS | =8.2 | |
OpenVMS | =8.3 | |
OpenVMS | =8.3 | |
OpenVMS | =8.3-1h1 | |
OpenVMS | =8.4 | |
OpenVMS | =8.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-3277 is classified as a denial of service vulnerability.
To fix CVE-2012-3277, update to the latest version of HP OpenVMS that addresses this vulnerability.
CVE-2012-3277 affects HP OpenVMS versions 7.3-2, 8.2, 8.3, 8.4 on Alpha and 8.3, 8.3-1H1, 8.4 on Itanium platforms.
CVE-2012-3277 can be exploited by remote attackers to cause a denial of service.
Yes, HP provides patches for CVE-2012-3277 in updated versions of the software.