Vulnerability Name: | CVE-2007-4732 (CCN-36379) | ||||||||
Assigned: | 2007-08-31 | ||||||||
Published: | 2007-08-31 | ||||||||
Updated: | 2017-09-29 | ||||||||
Summary: | Unspecified vulnerability in the strfreectty function in the Special File System (SPECFS) in Sun Solaris 8 through 10 allows local users to cause a denial of service (system panic), related to passing a NULL pointer to the pgsignal function. | ||||||||
CVSS v3 Severity: | 6.2 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
| ||||||||
CVSS v2 Severity: | 4.9 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C) 3.7 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-20 | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-4732 Source: OSVDB Type: UNKNOWN 37323 Source: CCN Type: SA26528 Sun Solaris Special File System "strfreectty()" Security Issue Source: SECUNIA Type: Patch, Vendor Advisory 26528 Source: CCN Type: SA26731 Avaya CMS / IR Solaris Special File System "strfreectty()" Security Issue Source: SECUNIA Type: UNKNOWN 26731 Source: CCN Type: SECTRACK ID: 1018643 Solaris Special File System Lets Local Users Deny Service Source: SECTRACK Type: Patch 1018643 Source: CCN Type: Sun Alert ID: 103009 A Security Vulnerability With the Special File System (SPECFS) strfreectty() Function May Allow a Local Unprivileged User to Panic a System Source: SUNALERT Type: Patch 103009 Source: CONFIRM Type: UNKNOWN http://support.avaya.com/elmodocs2/security/ASA-2007-374.htm Source: CCN Type: ASA-2007-374 A Security Vulnerability With the Special File System (SPECFS) strfreectty() Function May Allow a Local Unprivileged User to Panic a System (Sun 103009) Source: CCN Type: OSVDB ID: 37323 Solaris Special File System (SPECFS) strfreectty Function Local DoS Source: BID Type: UNKNOWN 25510 Source: CCN Type: BID-25510 Sun Solaris Special File System Local Denial of Service Vulnerability Source: VUPEN Type: UNKNOWN ADV-2007-3031 Source: XF Type: UNKNOWN solaris-strfreectty-dos(36379) Source: XF Type: UNKNOWN solaris-strfreectty-dos(36379) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:2173 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |