Announcing Incident Command! The AI powered Next-Gen SIEMLearn more.

vulnerability

Oracle Solaris 11: CVE-2021-28041 (11.4 SRU 33.94.0)

Severity
5
CVSS
(AV:N/AC:H/Au:S/C:P/I:P/A:P)
Published
Mar 5, 2021
Added
May 19, 2021
Modified
Feb 17, 2022

Description

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.

Solution

oracle-solaris-11-4-upgrade-network-ssh-8-4-0-1-11-4-33-0-1-94-0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.