vulnerability

Oracle Solaris 11: CVE-2017-3516: Vulnerability in Kernel Zones virtualized NIC driver

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:C)
Published
Apr 24, 2017
Added
May 29, 2017
Modified
Feb 1, 2022

Description

Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel Zones virtualized NIC driver). The supported version that is affected is 11.3. Easily "exploitable" vulnerability allows low privileged attacker with network access via multiple protocols to compromise Solaris. While the vulnerability is in Solaris, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Solaris. CVSS 3.0 Base Score 7.7 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H).

Solutions

oracle-solaris-11-3-upgrade-system-header-0-5-11-0-175-3-18-0-3-0oracle-solaris-11-3-upgrade-system-kernel-0-5-11-0-175-3-18-0-3-0oracle-solaris-11-3-upgrade-system-zones-brand-brand-solaris-kz-0-5-11-0-175-3-18-0-3-0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.