Vulnerabilities > CVE-2007-5368 - Local Denial of Service vulnerability in SUN Solaris 10.0

047910
CVSS 4.9 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
local
low complexity
sun
nessus

Summary

Multiple unspecified vulnerabilities in labeld in Trusted Extensions in Sun Solaris 10 allow local users to cause a denial of service (multiple application hang) via unspecified vectors.

Vulnerable Configurations

Part Description Count
OS
Sun
2

Nessus

  • NASL familySolaris Local Security Checks
    NASL idSOLARIS10_X86_126449.NASL
    descriptionSunOS 5.10_x86: Trusted Extensions labeld,. Date this patch was last updated by Sun : Nov/26/07
    last seen2018-09-01
    modified2018-08-13
    plugin id27080
    published2007-10-17
    reporterTenable
    sourcehttps://www.tenable.com/plugins/index.php?view=single&id=27080
    titleSolaris 10 (x86) : 126449-05
    code
    #%NASL_MIN_LEVEL 80502
    
    # @DEPRECATED@
    #
    # This script has been deprecated as the associated patch is not
    # currently a recommended security fix.
    #
    # Disabled on 2011/09/17.
    
    #
    # (C) Tenable Network Security, Inc.
    #
    #
    
    if ( ! defined_func("bn_random") ) exit(0);
    include("compat.inc");
    
    if(description)
    {
     script_id(27080);
     script_version("1.16");
    
     script_name(english: "Solaris 10 (x86) : 126449-05");
     script_cve_id("CVE-2007-5368");
     script_set_attribute(attribute: "synopsis", value:
    "The remote host is missing Sun Security Patch number 126449-05");
     script_set_attribute(attribute: "description", value:
    'SunOS 5.10_x86: Trusted Extensions labeld,.
    Date this patch was last updated by Sun : Nov/26/07');
     script_set_attribute(attribute: "solution", value:
    "You should install this patch for your system to be up-to-date.");
     script_set_attribute(attribute: "see_also", value:
    "https://getupdates.oracle.com/readme/126449-05");
     script_set_attribute(attribute: "cvss_vector", value: "CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C");
     script_set_attribute(attribute:"plugin_publication_date", value: "2007/10/17");
     script_cvs_date("Date: 2019/10/25 13:36:24");
     script_set_attribute(attribute:"vuln_publication_date", value: "2007/10/09");
     script_end_attributes();
    
     script_summary(english: "Check for patch 126449-05");
     script_category(ACT_GATHER_INFO);
     script_copyright(english:"This script is Copyright (C) 2007-2019 Tenable Network Security, Inc.");
     family["english"] = "Solaris Local Security Checks";
     script_family(english:family["english"]);
     
     script_dependencies("ssh_get_info.nasl");
     script_require_keys("Host/Solaris/showrev");
     exit(0);
    }
    
    
    
    # Deprecated.
    exit(0, "The associated patch is not currently a recommended security fix.");
    
  • NASL familySolaris Local Security Checks
    NASL idSOLARIS10_126448.NASL
    descriptionSunOS 5.10: Trusted Extensions labeld, chk. Date this patch was last updated by Sun : Nov/16/07
    last seen2018-09-01
    modified2018-08-13
    plugin id26957
    published2007-10-09
    reporterTenable
    sourcehttps://www.tenable.com/plugins/index.php?view=single&id=26957
    titleSolaris 10 (sparc) : 126448-05
    code
    #%NASL_MIN_LEVEL 80502
    
    # @DEPRECATED@
    #
    # This script has been deprecated as the associated patch is not
    # currently a recommended security fix.
    #
    # Disabled on 2011/09/17.
    
    #
    # (C) Tenable Network Security, Inc.
    #
    #
    
    if ( ! defined_func("bn_random") ) exit(0);
    include("compat.inc");
    
    if(description)
    {
     script_id(26957);
     script_version("1.18");
    
     script_name(english: "Solaris 10 (sparc) : 126448-05");
     script_cve_id("CVE-2007-5368");
     script_set_attribute(attribute: "synopsis", value:
    "The remote host is missing Sun Security Patch number 126448-05");
     script_set_attribute(attribute: "description", value:
    'SunOS 5.10: Trusted Extensions labeld, chk.
    Date this patch was last updated by Sun : Nov/16/07');
     script_set_attribute(attribute: "solution", value:
    "You should install this patch for your system to be up-to-date.");
     script_set_attribute(attribute: "see_also", value:
    "https://getupdates.oracle.com/readme/126448-05");
     script_set_attribute(attribute: "cvss_vector", value: "CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C");
     script_set_attribute(attribute:"plugin_publication_date", value: "2007/10/09");
     script_cvs_date("Date: 2019/10/25 13:36:23");
     script_set_attribute(attribute:"vuln_publication_date", value: "2007/10/09");
     script_end_attributes();
    
     script_summary(english: "Check for patch 126448-05");
     script_category(ACT_GATHER_INFO);
     script_copyright(english:"This script is Copyright (C) 2007-2019 Tenable Network Security, Inc.");
     family["english"] = "Solaris Local Security Checks";
     script_family(english:family["english"]);
     
     script_dependencies("ssh_get_info.nasl");
     script_require_keys("Host/Solaris/showrev");
     exit(0);
    }
    
    
    
    # Deprecated.
    exit(0, "The associated patch is not currently a recommended security fix.");
    

Oval

accepted2007-11-19T04:00:43.393-05:00
classvulnerability
contributors
namePai Peng
organizationOpsware, Inc.
definition_extensions
  • commentSolaris 10 (SPARC) is installed
    ovaloval:org.mitre.oval:def:1440
  • commentSolaris 10 (x86) is installed
    ovaloval:org.mitre.oval:def:1926
descriptionMultiple unspecified vulnerabilities in labeld in Trusted Extensions in Sun Solaris 10 allow local users to cause a denial of service (multiple application hang) via unspecified vectors.
familyunix
idoval:org.mitre.oval:def:1892
statusaccepted
submitted2007-10-12T07:38:45.000-04:00
titleSecurity Vulnerabilities in the Solaris Trusted Extensions "labeld" Service May Lead to a Denial of Service (DoS) Condition
version35