First published: Mon Apr 24 2017(Updated: )
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Zone). The supported version that is affected is 11.3. Easily "exploitable" vulnerability allows low privileged attacker with logon to the infrastructure where Solaris executes to compromise Solaris. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Solaris accessible data. CVSS 3.0 Base Score 3.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris SPARC | =11.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-3474 is considered an easily exploitable vulnerability that allows a low privileged attacker to compromise affected systems.
To remediate CVE-2017-3474, update your Solaris installation to the latest version that addresses this vulnerability.
CVE-2017-3474 specifically affects Oracle Solaris version 11.3.
CVE-2017-3474 can be exploited by low privileged attackers who have logon access to the infrastructure where Solaris executes.
CVE-2017-3474 impacts the Solaris component within the Oracle Sun Systems Products Suite, particularly the Zone subcomponent.