CVE-2002-1586: Low severity sun solaris vulnerability
Published Dec 3, 2002
·Updated
Solaris 2.5.1 through 9 allows local users to cause a denial of service (kernel panic) by setting the sdstruiowrq variable in the struioget function to null, which triggers a null dereference.
Affected Software
9 affected components
Sun Solaris=2.5.1
Sun SunOS=5.7
Sun SunOS=5.8
Sun Solaris=7.0
Sun Solaris=9.0
Sun SunOS=5.5.1
Sun Solaris=2.6
Sun Solaris=8.0
Sun SunOS
Remediation
Event History
Dec 3, 2002
CVE Published
05:00 AM
Feb 8, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1586?
CVE-2002-1586 is considered a high severity vulnerability due to its potential to cause a denial of service through kernel panic.
2
How do I fix CVE-2002-1586?
To fix CVE-2002-1586, it is recommended to upgrade to a patched version of Solaris that addresses this vulnerability.
3
Who is affected by CVE-2002-1586?
CVE-2002-1586 affects local users of Solaris versions 2.5.1 through 9.
4
What is the impact of CVE-2002-1586?
The impact of CVE-2002-1586 is a kernel panic, leading to a denial of service condition for the affected system.
5
Is CVE-2002-1586 remotely exploitable?
No, CVE-2002-1586 is not remotely exploitable as it requires local access to the system.