CVE-2020-2565: High severity Oracle Solaris vulnerability
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Consolidation Infrastructure). The supported version that is affected is 11. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Solaris, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle Solaris. CVSS 3.0 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-2565?
CVE-2020-2565 is classified as a low severity vulnerability that allows a low privileged attacker to compromise Oracle Solaris.
How do I fix CVE-2020-2565?
To mitigate CVE-2020-2565, ensure that you apply the latest patches provided by Oracle for Oracle Solaris 11.
What versions of Oracle Solaris are affected by CVE-2020-2565?
CVE-2020-2565 affects Oracle Solaris version 11.
Who is at risk from CVE-2020-2565?
Low privileged attackers with logon access to the infrastructure where Oracle Solaris runs are at risk from CVE-2020-2565.
What component of Oracle is related to CVE-2020-2565?
CVE-2020-2565 is related to the Consolidation Infrastructure component of the Oracle Solaris product.