First published: Wed Jan 16 2019(Updated: )
Vulnerability in the Oracle Solaris component of Oracle Sun Systems Products Suite (subcomponent: DHCP Client). The supported version that is affected is 10. Difficult to exploit vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in takeover of Oracle Solaris. CVSS 3.0 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H).
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris SPARC | =10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-2541 has been classified as a moderate severity vulnerability.
To mitigate CVE-2019-2541, apply the latest security patches provided by Oracle for Solaris 10.
CVE-2019-2541 affects Oracle Solaris 10 systems that use the DHCP Client.
CVE-2019-2541 requires physical access to the hardware communication segment to be exploited.
CVE-2019-2541 involves a vulnerability in the DHCP Client component of Oracle Solaris.