PT-2018-15628 · Oracle · Solaris

Published

2018-01-18

·

Updated

2019-10-03

·

CVE-2018-2578

CVSS v3.1

7.2

High

VectorAV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Oracle Sun Systems Products Suite (subcomponent: Kernel) version 11.3
Description The issue allows a high-privileged attacker with logon to the infrastructure where Solaris executes to compromise Solaris. Successful attacks require human interaction from a person other than the attacker and may significantly impact additional products. The issue can result in the takeover of Solaris.
Recommendations For version 11.3, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-2578

Affected Products

Solaris