Denial of Service Vulnerability in Oracle Solaris by Oracle Systems
CVE-2023-21984

6.5MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
18 April 2023

Summary

A vulnerability in Oracle Solaris's libraries component allows an attacker with network access via HTTP to exploit the system. This easily exploitable weakness can lead to unauthorized interruptions, causing the system to hang or crash repeatedly, resulting in a denial of service. Administrators are advised to apply the latest security patches to mitigate risks.

Affected Version(s)

Solaris Operating System 11

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.