PT-2017-10946 · Oracle · Solaris

Published

2017-08-08

·

Updated

2019-10-03

·

CVE-2017-10003

CVSS v3.1

4.5

Medium

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Oracle Sun Systems Products Suite (Solaris component) version 10
Description The issue allows a low-privileged attacker with logon access to the infrastructure where Solaris is executed to compromise Solaris. Successful attacks can result in unauthorized access to some of Solaris' accessible data, including update, insert, or delete access, as well as unauthorized read access to a subset of Solaris' accessible data. Additionally, it can cause a partial denial of service (DOS) of Solaris.
Recommendations For version 10, update to a version that includes a fix for this issue to prevent unauthorized access and potential denial of service.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2017-10003

Affected Products

Solaris