First published: Wed Jan 19 2022(Updated: )
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle HTTP Server | =12.2.1.3.0 | |
Oracle HTTP Server | =12.2.1.4.0 | |
Oracle ZFS Storage Appliance Kit | =8.8 | |
Oracle Solaris | =11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this Oracle Solaris vulnerability is CVE-2022-21375.
The kernel component of Oracle Solaris is affected by this vulnerability.
The severity level of CVE-2022-21375 is medium, with a severity value of 5.5.
A low privileged attacker with logon access to the Oracle Solaris infrastructure can exploit this vulnerability to compromise Oracle Solaris.
CVE-2022-21375 affects the supported version 11 of Oracle Solaris.
Oracle HTTP Server versions 12.2.1.3.0 and 12.2.1.4.0 are affected by this vulnerability.
The version 8.8 of Oracle ZFS Storage Appliance Kit is affected by CVE-2022-21375.