#VU37622 Input validation error in Oracle Solaris - CVE-2018-2710
Published: January 18, 2018 / Updated: August 8, 2020
Oracle Solaris
Oracle
Description
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). The supported version that is affected is 10. Easily exploitable vulnerability allows unauthenticated attacker with network access via ICMP to compromise Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Solaris. CVSS 3.0 Base Score 7.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).