CVE-2017-3510: Critical severity Oracle Solaris vulnerability
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel Zones virtualized NIC driver). The supported version that is affected is 11.3. Easily "exploitable" vulnerability allows low privileged attacker with network access via multiple protocols to compromise Solaris. While the vulnerability is in Solaris, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Solaris accessible data. CVSS 3.0 Base Score 7.7 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-3510?
CVE-2017-3510 is considered an easily exploitable vulnerability that allows low privileged attackers to compromise affected systems.
How do I fix CVE-2017-3510?
To fix CVE-2017-3510, apply the relevant patches provided by Oracle for Solaris version 11.3.
Who is affected by CVE-2017-3510?
CVE-2017-3510 affects users of Oracle Solaris version 11.3 with Kernel Zones virtualized NIC driver.
What types of access does CVE-2017-3510 require to exploit?
CVE-2017-3510 requires network access via multiple protocols for exploitation by an attacker.
What component of Oracle Sun Systems is affected by CVE-2017-3510?
CVE-2017-3510 affects the Kernel Zones virtualized NIC driver component of Oracle Solaris.