CVE-2017-17482

An issue was discovered in OpenVMS through V8.4-2L2 on Alpha and through V8.4-2L1 on IA64, and VAX/VMS 4.0 and later. A malformed DCL command table may result in a buffer overflow allowing a local privilege escalation when a non-privileged account enters a crafted command line. This bug is exploitable on VAX and Alpha and may cause a process crash on IA64. Software was affected regardless of whether it was directly shipped by VMS Software, Inc. (VSI), HPE, HP, Compaq, or Digital Equipment Corporation.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:hp:openvms:*:*:*:*:vms:*:*:*
cpe:2.3:o:hp:openvms:*:*:*:*:alpha:*:*:*
cpe:2.3:o:hp:openvms:*:*:*:*:vax:*:*:*
cpe:2.3:o:hp:openvms:*:*:*:*:ia64:*:*:*

Information

Published : 2018-02-07 07:29

Updated : 2018-08-13 14:47


NVD link : CVE-2017-17482

Mitre link : CVE-2017-17482


JSON object : View

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

Advertisement

dedicated server usa

Products Affected

hp

  • openvms