CVE-2007-2989: High severity Sun Solaris vulnerability
The libike library in Sun Solaris 9 before 20070529 contains a logic error related to a certain pointer, which allows remote attackers to cause a denial of service (in.iked daemon crash) by sending certain UDP packets with a source port different from 500. NOTE: this issue might overlap CVE-2006-2298.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2989?
CVE-2007-2989 is classified as a vulnerability that can lead to a denial of service, specifically crashing the in.iked daemon.
How do I fix CVE-2007-2989?
To fix CVE-2007-2989, it is recommended to apply the latest patches or updates provided by Oracle for Solaris 9.
Which versions of Solaris are affected by CVE-2007-2989?
CVE-2007-2989 affects Sun Solaris 9.0 on both SPARC and x86 architectures.
What type of attack does CVE-2007-2989 facilitate?
CVE-2007-2989 allows remote attackers to cause a denial of service by sending crafted UDP packets.
Can CVE-2007-2989 be exploited remotely?
Yes, CVE-2007-2989 can be exploited remotely by sending specific UDP packets to the targeted system.