Vulnerability Name: | CVE-2007-4126 (CCN-35700) | ||||||||
Assigned: | 2007-07-30 | ||||||||
Published: | 2007-07-30 | ||||||||
Updated: | 2017-09-29 | ||||||||
Summary: | Unspecified vulnerability in the dynamic tracing framework (DTrace) on Sun Solaris 10 before 20070730 allows local users with PRIV_DTRACE_USER privileges to cause a denial of service (panic or hang) via unspecified use of certain DTrace programs. | ||||||||
CVSS v3 Severity: | 2.8 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 1.5 Low (CVSS v2 Vector: AV:L/AC:M/Au:S/C:N/I:N/A:P) 1.1 Low (Temporal CVSS v2 Vector: AV:L/AC:M/Au:S/C:N/I:N/A:P/E:U/RL:OF/RC:C)
1.3 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:S/C:N/I:N/A:P/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-4126 Source: OSVDB Type: UNKNOWN 36613 Source: CCN Type: SA26280 Sun Solaris DTrace Denial of Service Source: SECUNIA Type: Vendor Advisory 26280 Source: CCN Type: SECTRACK ID: 1018484 Solaris dtrace Lets Local Users Deny Service Source: CCN Type: Sun Alert ID: 103021 Solaris 10 Systems May Panic or Hang When Running Certain DTrace D Programs Source: SUNALERT Type: Patch 103021 Source: CCN Type: ASA-2007-352 Solaris 10 Systems May Panic or Hang When Running Certain DTrace D Programs (Sun 103021) Source: CCN Type: OSVDB ID: 36613 Solaris DTrace PRIV_DTRACE_USER Local DoS Source: CCN Type: OSVDB ID: 42021 Solaris 10 DTrace Dynamic Tracing Framework Kernel Tracing Information Disclosure Source: BID Type: UNKNOWN 25151 Source: CCN Type: BID-25151 Sun Solaris DTrace Local Denial of Service Vulnerability Source: SECTRACK Type: Patch 1018484 Source: VUPEN Type: UNKNOWN ADV-2007-2729 Source: XF Type: UNKNOWN solaris-dtrace-dos(35700) Source: XF Type: UNKNOWN solaris-dtrace-dos(35700) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:9039 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |