Vulnerabilities > CVE-2004-1358 - Unspecified vulnerability in SUN Solaris 9.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
sun

Summary

The patches (1) 114332-08 and (2) 114929-06 for Sun Solaris 9 disable the auditing functionality of the Basic Security Module (BSM), which allows attackers to avoid having their activity logged.

Vulnerable Configurations

Part Description Count
OS
Sun
2

Oval

accepted2005-06-01T03:30:00.000-04:00
classvulnerability
contributors
nameBrian Soby
organizationThe MITRE Corporation
descriptionThe patches (1) 114332-08 and (2) 114929-06 for Sun Solaris 9 disable the auditing functionality of the Basic Security Module (BSM), which allows attackers to avoid having their activity logged.
familyunix
idoval:org.mitre.oval:def:3567
statusaccepted
submitted2005-04-13T12:00:00.000-04:00
titlePatches Disable Basic Security Module Auditing Functionality
version35