CVE-2007-3723: Low severity Sun Solaris vulnerability
The process scheduler in the Sun Solaris kernel does not make use of the process statistics kept by the kernel and performs scheduling based upon CPU billing gathered from periodic process sampling ticks, which allows local users to cause a denial of service (CPU consumption), as described in "Secretly Monopolizing the CPU Without Superuser Privileges."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3723?
CVE-2007-3723 is classified as a high severity vulnerability due to its potential for causing a denial of service through excessive CPU consumption.
How do I fix CVE-2007-3723?
To mitigate CVE-2007-3723, users should apply the appropriate security patches provided by Oracle for Solaris.
Who is affected by CVE-2007-3723?
CVE-2007-3723 affects local users of the Sun Solaris operating system who can manipulate process scheduling.
What types of attacks can CVE-2007-3723 enable?
CVE-2007-3723 can enable local denial of service attacks by causing high CPU consumption.
When was CVE-2007-3723 disclosed?
CVE-2007-3723 was disclosed in 2007 and remains a concern for the security of Solaris systems.