Vulnerabilities > CVE-2007-4126 - Unspecified vulnerability in SUN Solaris 10.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN sun
nessus
Summary
Unspecified vulnerability in the dynamic tracing framework (DTrace) on Sun Solaris 10 before 20070730 allows local users with PRIV_DTRACE_USER privileges to cause a denial of service (panic or hang) via unspecified use of certain DTrace programs.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 2 |
Nessus
NASL family Solaris Local Security Checks NASL id SOLARIS10_125100.NASL description SunOS 5.10: Kernel Update patch. Date this patch was last updated by Sun : Jun/26/07 last seen 2018-09-01 modified 2018-08-13 plugin id 24954 published 2007-04-05 reporter Tenable source https://www.tenable.com/plugins/index.php?view=single&id=24954 title Solaris 10 (sparc) : 125100-10 code #%NASL_MIN_LEVEL 80502 # @DEPRECATED@ # # This script has been deprecated as the associated patch is not # currently a recommended security fix. # # Disabled on 2011/10/24. # # # (C) Tenable Network Security, Inc. # # if ( ! defined_func("bn_random") ) exit(0); include("compat.inc"); if(description) { script_id(24954); script_version("1.32"); script_name(english: "Solaris 10 (sparc) : 125100-10"); script_cve_id("CVE-2007-3469", "CVE-2007-4126"); script_set_attribute(attribute: "synopsis", value: "The remote host is missing Sun Security Patch number 125100-10"); script_set_attribute(attribute: "description", value: 'SunOS 5.10: Kernel Update patch. Date this patch was last updated by Sun : Jun/26/07'); script_set_attribute(attribute: "solution", value: "You should install this patch for your system to be up-to-date."); script_set_attribute(attribute: "see_also", value: "http://download.oracle.com/sunalerts/1017347.1.html"); script_set_attribute(attribute: "cvss_vector", value: "CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C"); script_set_attribute(attribute:"plugin_publication_date", value: "2007/04/05"); script_cvs_date("Date: 2019/10/25 13:36:23"); script_set_attribute(attribute:"vuln_publication_date", value: "2007/06/27"); script_end_attributes(); script_summary(english: "Check for patch 125100-10"); script_category(ACT_GATHER_INFO); script_copyright(english:"This script is Copyright (C) 2007-2019 Tenable Network Security, Inc."); family["english"] = "Solaris Local Security Checks"; script_family(english:family["english"]); script_dependencies("ssh_get_info.nasl"); script_require_keys("Host/Solaris/showrev"); exit(0); } # Deprecated. exit(0, "The associated patch is not currently a recommended security fix.");
NASL family Solaris Local Security Checks NASL id SOLARIS10_X86_125101.NASL description SunOS 5.10_x86: Kernel Update patch. Date this patch was last updated by Sun : Jun/26/07 last seen 2018-09-01 modified 2018-08-13 plugin id 24851 published 2007-03-18 reporter Tenable source https://www.tenable.com/plugins/index.php?view=single&id=24851 title Solaris 10 (x86) : 125101-10 code #%NASL_MIN_LEVEL 80502 # @DEPRECATED@ # # This script has been deprecated as the associated patch is not # currently a recommended security fix. # # Disabled on 2011/10/24. # # # (C) Tenable Network Security, Inc. # # if ( ! defined_func("bn_random") ) exit(0); include("compat.inc"); if(description) { script_id(24851); script_version("1.31"); script_name(english: "Solaris 10 (x86) : 125101-10"); script_cve_id("CVE-2007-3469", "CVE-2007-4126"); script_set_attribute(attribute: "synopsis", value: "The remote host is missing Sun Security Patch number 125101-10"); script_set_attribute(attribute: "description", value: 'SunOS 5.10_x86: Kernel Update patch. Date this patch was last updated by Sun : Jun/26/07'); script_set_attribute(attribute: "solution", value: "You should install this patch for your system to be up-to-date."); script_set_attribute(attribute: "see_also", value: "http://download.oracle.com/sunalerts/1017347.1.html"); script_set_attribute(attribute: "cvss_vector", value: "CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C"); script_set_attribute(attribute:"plugin_publication_date", value: "2007/03/18"); script_cvs_date("Date: 2019/10/25 13:36:24"); script_set_attribute(attribute:"vuln_publication_date", value: "2007/06/27"); script_end_attributes(); script_summary(english: "Check for patch 125101-10"); script_category(ACT_GATHER_INFO); script_copyright(english:"This script is Copyright (C) 2007-2019 Tenable Network Security, Inc."); family["english"] = "Solaris Local Security Checks"; script_family(english:family["english"]); script_dependencies("ssh_get_info.nasl"); script_require_keys("Host/Solaris/showrev"); exit(0); } # Deprecated. exit(0, "The associated patch is not currently a recommended security fix.");
Oval
accepted | 2007-09-06T09:13:39.047-04:00 | ||||||||
class | vulnerability | ||||||||
contributors |
| ||||||||
definition_extensions |
| ||||||||
description | Unspecified vulnerability in the dynamic tracing framework (DTrace) on Sun Solaris 10 before 20070730 allows local users with PRIV_DTRACE_USER privileges to cause a denial of service (panic or hang) via unspecified use of certain DTrace programs. | ||||||||
family | unix | ||||||||
id | oval:org.mitre.oval:def:9039 | ||||||||
status | accepted | ||||||||
submitted | 2007-08-02T11:47:26.000-04:00 | ||||||||
title | Solaris 10 Systems May Panic or Hang When Running Certain DTrace D Programs | ||||||||
version | 35 |
References
- http://osvdb.org/36613
- http://osvdb.org/36613
- http://secunia.com/advisories/26280
- http://secunia.com/advisories/26280
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-103021-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-103021-1
- http://www.securityfocus.com/bid/25151
- http://www.securityfocus.com/bid/25151
- http://www.securitytracker.com/id?1018484
- http://www.securitytracker.com/id?1018484
- http://www.vupen.com/english/advisories/2007/2729
- http://www.vupen.com/english/advisories/2007/2729
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35700
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35700
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9039
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9039