Vulnerabilities > CVE-2007-2529 - Local Denial Of Service vulnerability in Sun Solaris ACE_SETACL

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
sun

Summary

Integer signedness error in the acl (facl) system call in Solaris 10 before 20070507 allows local users to cause a denial of service (kernel panic) and possibly gain privileges via a certain argument, related to ACE_SETACL.

Vulnerable Configurations

Part Description Count
OS
Sun
2

Oval

accepted2007-07-18T15:57:49.919-04:00
classvulnerability
contributors
namePai Peng
organizationOpsware, Inc.
descriptionInteger signedness error in the acl (facl) system call in Solaris 10 before 20070507 allows local users to cause a denial of service (kernel panic) and possibly gain privileges via a certain argument, related to ACE_SETACL.
familyunix
idoval:org.mitre.oval:def:1669
statusaccepted
submitted2007-06-15T09:00:00.000-04:00
titleSecurity Vulnerability Relating to the acl(2) System Call May Allow Denial of Service (DoS) to the System
version36