CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:L/AC:L/Au:N/C:N/I:N/A:P
AI Score
Confidence
High
EPSS
Percentile
13.2%
Solaris 2.5.1 through 9 allows local users to cause a denial of service (kernel panic) by setting the sd_struiowrq variable in the struioget function to null, which triggers a null dereference.
Vendor | Product | Version | CPE |
---|---|---|---|
sun | solaris | 2.5.1 | cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:* |
sun | solaris | 2.6 | cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:* |
sun | solaris | 7.0 | cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:* |
sun | solaris | 8.0 | cpe:2.3:o:sun:solaris:8.0:*:x86:*:*:*:*:* |
sun | solaris | 9.0 | cpe:2.3:o:sun:solaris:9.0:*:sparc:*:*:*:*:* |
sun | sunos | - | cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:* |
sun | sunos | 5.5.1 | cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:* |
sun | sunos | 5.7 | cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:* |
sun | sunos | 5.8 | cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:* |