CVE-2007-6505: Low severity Sun Solaris vulnerability
Solaris 9, with Solaris Auditing enabled and certain patches for sshd installed, can generate audit records with an audit-ID of 0 even when the user logging into ssh is not root, which makes it easier for attackers to avoid detection and can make it more difficult to conduct forensics activities.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2007-6505?
CVE-2007-6505 is considered a medium severity vulnerability due to its exploitation potential and impact on auditing processes.
How does CVE-2007-6505 affect Solaris 9?
CVE-2007-6505 allows non-root users to generate audit records with an audit-ID of 0, complicating detection and forensics.
What versions of Solaris are affected by CVE-2007-6505?
CVE-2007-6505 affects Solaris 9 on both SPARC and x86 architectures.
How can I mitigate CVE-2007-6505?
Mitigation for CVE-2007-6505 includes applying the latest security patches provided by Oracle for Solaris 9.
Is CVE-2007-6505 a zero-day exploit?
CVE-2007-6505 is not a zero-day exploit as it has been publicly disclosed and documented since 2007.