Vulnerabilities > CVE-2014-4224 - Local Command Injection vulnerability in Cisco Wireless LAN Controller
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
COMPLETE Summary
Unspecified vulnerability in Oracle Sun Solaris 8, 9, 10, and 11.1 allows local users to affect availability via unknown vectors related to sockfs.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 | |
OS | 3 |
Nessus
NASL family Solaris Local Security Checks NASL id SOLARIS10_X86_150114.NASL description Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: sockfs). Supported versions that are affected are 8, 9, 10 and 11.1. Easily exploitable vulnerability requiring logon to Operating System. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). This plugin has been deprecated and either replaced with individual 150114 patch-revision plugins, or deemed non-security related. last seen 2019-02-21 modified 2018-07-30 plugin id 74085 published 2014-05-19 reporter Tenable source https://www.tenable.com/plugins/index.php?view=single&id=74085 title Solaris 10 (x86) : 150114-02 (deprecated) NASL family Solaris Local Security Checks NASL id SOLARIS9_X86_120463.NASL description Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: sockfs). Supported versions that are affected are 8, 9, 10 and 11.1. Easily exploitable vulnerability requiring logon to Operating System. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). last seen 2020-06-01 modified 2020-06-02 plugin id 76556 published 2014-07-17 reporter This script is Copyright (C) 2014-2018 Tenable Network Security, Inc. source https://www.tenable.com/plugins/nessus/76556 title Solaris 9 (x86) : 120463-07 NASL family Solaris Local Security Checks NASL id SOLARIS8_X86_121973.NASL description Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: sockfs). Supported versions that are affected are 8, 9, 10 and 11.1. Easily exploitable vulnerability requiring logon to Operating System. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). last seen 2020-06-01 modified 2020-06-02 plugin id 76554 published 2014-07-17 reporter This script is Copyright (C) 2014-2018 Tenable Network Security, Inc. source https://www.tenable.com/plugins/nessus/76554 title Solaris 8 (x86) : 121973-06 NASL family Solaris Local Security Checks NASL id SOLARIS10_X86_150114-02.NASL description Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: sockfs). Supported versions that are affected are 8, 9, 10 and 11.1. Easily exploitable vulnerability requiring logon to Operating System. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). last seen 2020-06-01 modified 2020-06-02 plugin id 108183 published 2018-03-12 reporter This script is Copyright (C) 2018-2020 and is owned by Tenable, Inc. or an Affiliate thereof. source https://www.tenable.com/plugins/nessus/108183 title Solaris 10 (x86) : 150114-02 NASL family Solaris Local Security Checks NASL id SOLARIS10_150113-02.NASL description Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: sockfs). Supported versions that are affected are 8, 9, 10 and 11.1. Easily exploitable vulnerability requiring logon to Operating System. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). last seen 2020-06-01 modified 2020-06-02 plugin id 107689 published 2018-03-12 reporter This script is Copyright (C) 2018-2020 and is owned by Tenable, Inc. or an Affiliate thereof. source https://www.tenable.com/plugins/nessus/107689 title Solaris 10 (sparc) : 150113-02 NASL family Solaris Local Security Checks NASL id SOLARIS10_150113.NASL description Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: sockfs). Supported versions that are affected are 8, 9, 10 and 11.1. Easily exploitable vulnerability requiring logon to Operating System. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). This plugin has been deprecated and either replaced with individual 150113 patch-revision plugins, or deemed non-security related. last seen 2019-02-21 modified 2018-07-30 plugin id 74083 published 2014-05-19 reporter Tenable source https://www.tenable.com/plugins/index.php?view=single&id=74083 title Solaris 10 (sparc) : 150113-02 (deprecated) NASL family Solaris Local Security Checks NASL id SOLARIS9_118335.NASL description Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: sockfs). Supported versions that are affected are 8, 9, 10 and 11.1. Easily exploitable vulnerability requiring logon to Operating System. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). last seen 2020-06-01 modified 2020-06-02 plugin id 76555 published 2014-07-17 reporter This script is Copyright (C) 2014-2018 Tenable Network Security, Inc. source https://www.tenable.com/plugins/nessus/76555 title Solaris 9 (sparc) : 118335-10 NASL family Solaris Local Security Checks NASL id SOLARIS_JUL2014_SRU11_1_18_5_0.NASL description This Solaris system is missing necessary patches to address a critical security update : - Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: sockfs). Supported versions that are affected are 8, 9, 10 and 11.1. Easily exploitable vulnerability requiring logon to Operating System. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). (CVE-2014-4224) last seen 2020-06-01 modified 2020-06-02 plugin id 76820 published 2014-07-26 reporter This script is Copyright (C) 2014-2019 and is owned by Tenable, Inc. or an Affiliate thereof. source https://www.tenable.com/plugins/nessus/76820 title Oracle Solaris Critical Patch Update : jul2014_SRU11_1_18_5_0 NASL family Solaris Local Security Checks NASL id SOLARIS8_121972.NASL description Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: sockfs). Supported versions that are affected are 8, 9, 10 and 11.1. Easily exploitable vulnerability requiring logon to Operating System. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). last seen 2020-06-01 modified 2020-06-02 plugin id 76553 published 2014-07-17 reporter This script is Copyright (C) 2014-2018 Tenable Network Security, Inc. source https://www.tenable.com/plugins/nessus/76553 title Solaris 8 (sparc) : 121972-06
References
- http://seclists.org/fulldisclosure/2014/Dec/23
- http://secunia.com/advisories/59504
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.securityfocus.com/archive/1/534161/100/0/threaded
- http://www.securityfocus.com/bid/68574
- http://www.securitytracker.com/id/1030588
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94610