CVE-2014-2608: High severity hp smart update manager vulnerability
Published Dec 10, 2014
·Updated
Unspecified vulnerability in HP Smart Update Manager 6.x before 6.4.1 on Windows, and 6.2.x through 6.4.x before 6.4.1 on Linux, allows local users to obtain sensitive information, and consequently gain privileges, via unknown vectors.
Affected Software
4 affected components
HPE Smart Update Manager>=6.0.0<6.4.1
Microsoft Windows
HPE Smart Update Manager>=6.2.0<6.4.1
Linux Linux kernel
Event History
Dec 10, 2014
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-2608?
CVE-2014-2608 is classified as a moderate severity vulnerability affecting HP Smart Update Manager.
2
How do I fix CVE-2014-2608?
To mitigate CVE-2014-2608, update HP Smart Update Manager to version 6.4.1 or later.
3
Who is affected by CVE-2014-2608?
CVE-2014-2608 affects local users of HP Smart Update Manager versions before 6.4.1 on both Windows and Linux.
4
What are the consequences of CVE-2014-2608?
Exploitation of CVE-2014-2608 may allow local users to obtain sensitive information and escalate privileges.
5
When was CVE-2014-2608 reported?
CVE-2014-2608 was reported in 2014, highlighting a vulnerability in HP Smart Update Manager.