CVE-2008-5689: Null Pointer Dereference
tun in IP Tunnel in Solaris 10 and OpenSolaris snv01 through snv76 allows local users to cause a denial of service (panic) and possibly execute arbitrary code via a crafted SIOCGTUNPARAM IOCTL request, which triggers a NULL pointer dereference.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5689?
CVE-2008-5689 has a medium severity rating due to its potential for causing denial of service and possibly allowing arbitrary code execution.
How do I fix CVE-2008-5689?
To fix CVE-2008-5689, you should apply the relevant patches provided by your system vendor for Solaris 10 and OpenSolaris versions affected by this vulnerability.
Which systems are affected by CVE-2008-5689?
CVE-2008-5689 affects multiple versions of Solaris 10 and OpenSolaris, including snv releases from 01 to 76.
What does CVE-2008-5689 exploit?
CVE-2008-5689 exploits a vulnerability in the tun IP Tunnel that allows a local user to trigger a NULL pointer dereference.
Can CVE-2008-5689 lead to remote exploits?
CVE-2008-5689 is a local vulnerability and does not allow remote exploits, but it can still affect the stability and security of the system.