Vulnerabilities > CVE-2006-5213 - Local Insecure Permissions vulnerability in SUN Solaris 10.0

047910
CVSS 3.6 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
NONE
local
low complexity
sun
nessus

Summary

Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local users to intercept or spoof packets by creating a raw socket on a link aggregation (network device aggregation).

Vulnerable Configurations

Part Description Count
OS
Sun
1

Nessus

  • NASL familySolaris Local Security Checks
    NASL idSOLARIS10_X86_118855.NASL
    descriptionSunOS 5.10_x86: kernel patch. Date this patch was last updated by Sun : Jan/29/07 This plugin has been deprecated and either replaced with individual 118855 patch-revision plugins, or deemed non-security related.
    last seen2019-02-21
    modified2018-07-30
    plugin id22154
    published2006-08-04
    reporterTenable
    sourcehttps://www.tenable.com/plugins/index.php?view=single&id=22154
    titleSolaris 10 (x86) : 118855-36 (deprecated)
  • NASL familySolaris Local Security Checks
    NASL idSOLARIS10_118833.NASL
    descriptionSunOS 5.10: kernel patch. Date this patch was last updated by Sun : Jan/29/07 This plugin has been deprecated and either replaced with individual 118833 patch-revision plugins, or deemed non-security related.
    last seen2019-02-21
    modified2018-07-30
    plugin id21792
    published2006-07-03
    reporterTenable
    sourcehttps://www.tenable.com/plugins/index.php?view=single&id=21792
    titleSolaris 10 (sparc) : 118833-36 (deprecated)