CVE-2004-1767: High severity Sun SunOS vulnerability
Published Dec 31, 2004
·Updated
The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel modules (LKM), possibly involving the modload function.
Affected Software
7 affected components
Sun SunOS=5.7
Sun SunOS=5.8
Sun Solaris=9.0
Sun Solaris=7.0
Sun Solaris=9.0
Sun Solaris=2.6
Sun Solaris=8.0
Remediation
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Mar 10, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1767?
CVE-2004-1767 has a high severity rating as it allows local users to gain elevated privileges through arbitrary loadable kernel modules.
2
How do I fix CVE-2004-1767?
To remediate CVE-2004-1767, apply the latest patches provided by Oracle for affected Solaris versions.
3
Which versions of Solaris are affected by CVE-2004-1767?
CVE-2004-1767 affects Solaris versions 2.6, 7, 8, and 9.
4
Who can exploit CVE-2004-1767?
Local users with access to the affected Solaris systems can potentially exploit CVE-2004-1767.
5
What impact does CVE-2004-1767 have on system security?
CVE-2004-1767 undermines system security by allowing local users to load arbitrary kernel modules, which can lead to privilege escalation.