Vulnerabilities > CVE-2007-3248 - Remote IPv6 IPSec Packet Denial of Service vulnerability in SUN Solaris 10.0

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
low complexity
sun

Summary

Unspecified vulnerability in Sun Solaris 10 before 20070614, when IPv6 interfaces are present but not configured for IPsec, allows remote attackers to cause a denial of service (system crash) via certain network traffic.

Vulnerable Configurations

Part Description Count
OS
Sun
2

Oval

accepted2007-08-01T22:26:14.078-04:00
classvulnerability
contributors
nameNicholas Hansen
organizationOpsware, Inc.
definition_extensions
  • commentSolaris 10 (SPARC) is installed
    ovaloval:org.mitre.oval:def:1440
  • commentSolaris 10 (x86) is installed
    ovaloval:org.mitre.oval:def:1926
descriptionUnspecified vulnerability in Sun Solaris 10 before 20070614, when IPv6 interfaces are present but not configured for IPsec, allows remote attackers to cause a denial of service (system crash) via certain network traffic.
familyunix
idoval:org.mitre.oval:def:1444
statusaccepted
submitted2007-06-19T14:30:00.000-04:00
titleSecurity Vulnerability in IPv6 Implementation (ip6(7p)) Related to the Handling of IPsec Packets may Lead to a System Panic, Resulting in a Denial of Service (DoS)
version35