CVE-2022-21375: Medium severity oracle http server vulnerability
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of this Oracle Solaris vulnerability?
The vulnerability ID of this Oracle Solaris vulnerability is CVE-2022-21375.
Which component of Oracle Systems is affected by this vulnerability?
The kernel component of Oracle Solaris is affected by this vulnerability.
What is the severity level of CVE-2022-21375?
The severity level of CVE-2022-21375 is medium, with a severity value of 5.5.
How can a low privileged attacker exploit this vulnerability?
A low privileged attacker with logon access to the Oracle Solaris infrastructure can exploit this vulnerability to compromise Oracle Solaris.
Which versions of Oracle Solaris are affected by CVE-2022-21375?
CVE-2022-21375 affects the supported version 11 of Oracle Solaris.
Which versions of Oracle HTTP Server are affected by this vulnerability?
Oracle HTTP Server versions 12.2.1.3.0 and 12.2.1.4.0 are affected by this vulnerability.
Which version of Oracle ZFS Storage Appliance Kit is affected by CVE-2022-21375?
The version 8.8 of Oracle ZFS Storage Appliance Kit is affected by CVE-2022-21375.