First published: Wed Jul 18 2018(Updated: )
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). The supported version that is affected is 11.3. Easily exploitable vulnerability allows low privileged attacker with network access via RPC to compromise Solaris. While the vulnerability is in Solaris, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Solaris. CVSS 3.0 Base Score 7.7 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris SPARC | =11.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-2908 is considered a high severity vulnerability due to its exploitability by low privileged attackers.
To fix CVE-2018-2908, apply the latest patches provided by Oracle for Solaris version 11.3.
CVE-2018-2908 affects users of Oracle Solaris version 11.3.
CVE-2018-2908 can be exploited by low privileged attackers with network access via RPC.
CVE-2018-2908 affects the Kernel component of Oracle Solaris.