First published: Wed Jan 16 2019(Updated: )
Vulnerability in the Oracle Solaris component of Oracle Sun Systems Products Suite (subcomponent: LDoms IO). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Solaris. CVSS 3.0 Base Score 4.0 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L).
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris SPARC | =10 | |
Oracle Solaris SPARC | =11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-2545 is considered an easily exploitable vulnerability that allows unauthorized access and compromise.
To mitigate CVE-2019-2545, users should apply the latest security patches provided by Oracle for Solaris versions 10 and 11.
CVE-2019-2545 affects users running Oracle Solaris 10 and 11 on supported platforms.
Yes, CVE-2019-2545 can be exploited by an unauthenticated attacker with access to the local infrastructure.
CVE-2019-2545 involves a vulnerability in the LDoms IO component of the Oracle Solaris system.