CVE-2008-5417
Last modified
CVE-2008-5417 is a vulnerability of currently unknown severity. HP DECnet-Plus 8.3 before ECO03 for OpenVMS on the Alpha platform uses world-writable permissions for the OSIT$NAMES logical name table, which allows local users to bypass intended access restrictions and modify this table via the (1) SYS$CRELNM and (2) SYS$DELLNM system services.. EPSS estimates a 0.44% chance of exploitation in the next 30 days.
Description
HP DECnet-Plus 8.3 before ECO03 for OpenVMS on the Alpha platform uses world-writable permissions for the OSIT$NAMES logical name table, which allows local users to bypass intended access restrictions and modify this table via the (1) SYS$CRELNM and (2) SYS$DELLNM system services.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hp | Decnet Plus For Openvms | 8.3 |
References
- http://secunia.com/advisories/33028Vendor Advisory
- http://secunia.com/advisories/33028Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-5417?
How severe is CVE-2008-5417?
How do I fix CVE-2008-5417?
Are you affected by CVE-2008-5417?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
