PT-2016-1809 · Oracle · Oracle Sun Solaris

Published

2016-04-21

·

Updated

2016-12-03

·

CVE-2016-0693

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Oracle Sun Solaris versions 10 and 11.3
Description The issue is related to an unspecified vulnerability in the PAM LDAP module, which can be exploited by remote attackers to affect confidentiality, integrity, and availability. The vulnerability is associated with errors in the code of the PAM LDAP module in the Solaris operating system.
Recommendations For Oracle Sun Solaris versions 10 and 11.3, consider restricting access to the PAM LDAP module to minimize the risk of exploitation until a patch is available. As a temporary workaround, consider disabling the PAM LDAP module until a fix is provided.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-01142
CVE-2016-0693

Affected Products

Oracle Sun Solaris