First published: Thu Oct 19 2017(Updated: )
Vulnerability in the Sun ZFS Storage Appliance Kit (AK) component of Oracle Sun Systems Products Suite (subcomponent: Filesystem). The supported version that is affected is AK 2013. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Sun ZFS Storage Appliance Kit (AK) executes to compromise Sun ZFS Storage Appliance Kit (AK). Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Sun ZFS Storage Appliance Kit (AK). CVSS 3.0 Base Score 5.0 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris | =2013 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-10275 is classified as an easily exploitable vulnerability that could be used by low privileged attackers.
To resolve CVE-2017-10275, it is recommended to apply the latest patches provided by Oracle for the affected version of Sun ZFS Storage Appliance Kit.
CVE-2017-10275 affects Oracle Solaris AK version 2013.
Yes, CVE-2017-10275 allows low privileged attackers to exploit the vulnerability and potentially gain unauthorized access.
There are currently no known workarounds for CVE-2017-10275 other than applying the latest patches.