vendor:
Solaris
by:
prdelka
7.2
CVSS
HIGH
Integer Overflow
190
CWE
Product Name: Solaris
Affected Version From: Solaris <= 10
Affected Version To: Solaris <= 10
Patch Exists: YES
Related CWE: N/A
CPE: o:sun:solaris
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Solaris
2005
Sun Microsystems Solaris sysinfo() Kernel Memory Disclosure exploit
It has been reported that it may be possible for attackers to remotely delete security associations (SAs) in hosts running the KAME IKE daemon Racoon. An integer overflow vulnerability in Sun Microsystems Inc. Solaris allows attackers to read kernel memory from a non-privileged userspace process. The vulnerability specifically exists due to an integer overflow in /usr/src/uts/common/syscall/systeminfo.c
Mitigation:
Apply the latest security patches from Sun Microsystems Inc.