Vulnerability Name: | CVE-2007-2465 (CCN-34003) | ||||||||
Assigned: | 2007-05-01 | ||||||||
Published: | 2007-05-01 | ||||||||
Updated: | 2018-10-30 | ||||||||
Summary: | Unspecified vulnerability in Sun Solaris 9, when Solaris Auditing (BSM) is enabled for file read, write, attribute modify, create, or delete audit classes, allows local users to cause a denial of service (panic) via unknown vectors, possibly related to the audit_savepath function. The vendor has addressed this issue with the following patches: Sun Solaris 9_x86: Sun x86 Solaris 9 Patch 122301-06 http://sunsolve.sun.com/search/document.do?assetkey=urn:cds:docid:1-21 -122301-06-1 Sun Solaris 9: Sun SPARC Solaris 9 Patch 122300-06 http://sunsolve.sun.com/search/document.do?assetkey=urn:cds:docid:1-21 -122300-06-1 | ||||||||
CVSS v3 Severity: | 6.2 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
| ||||||||
CVSS v2 Severity: | 4.7 Medium (CVSS v2 Vector: AV:L/AC:M/Au:N/C:N/I:N/A:C) 3.5 Low (Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-2465 Source: OSVDB Type: UNKNOWN 34904 Source: CCN Type: SA25081 Sun Solaris 9 Auditing BSM Denial of Service Source: SECUNIA Type: Patch, Vendor Advisory 25081 Source: CCN Type: SECTRACK ID: 1017992 Solaris BSM Auditing Lets Local Users Crash the System Source: CCN Type: Sun Alert ID: 102900 Solaris 9 Systems With Solaris Auditing (BSM) Enabled may Panic if Certain Audit Classes are Being Audited Source: SUNALERT Type: UNKNOWN 102900 Source: CCN Type: ASA-2007-228 Solaris 9 Systems With Solaris Auditing (BSM) Enabled may Panic if Certain Audit Classes are Being Audited (Sun 102900) Source: CCN Type: OSVDB ID: 34904 Solaris Auditing (BSM) Unspecified Local DoS Source: BID Type: Patch 23751 Source: CCN Type: BID-23751 Sun Solaris 9 Auditing BSM Unspecified Local Denial Of Service Vulnerability Source: SECTRACK Type: Patch 1017992 Source: VUPEN Type: UNKNOWN ADV-2007-1611 Source: XF Type: UNKNOWN sun-solaris-bsm-dos(34003) Source: XF Type: UNKNOWN sun-solaris-bsm-dos(34003) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:1085 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |