Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Solaris. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
References
Link | Resource |
---|---|
https://www.oracle.com/security-alerts/cpuapr2022.html | Patch Vendor Advisory |
https://www.oracle.com/security-alerts/cpujan2022.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
29 Jul 2022, 16:26
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://www.oracle.com/security-alerts/cpuapr2022.html - Patch, Vendor Advisory | |
CPE | cpe:2.3:a:oracle:http_server:12.2.1.4.0:*:*:*:*:*:*:* cpe:2.3:a:oracle:http_server:12.2.1.3.0:*:*:*:*:*:*:* cpe:2.3:a:oracle:zfs_storage_appliance_kit:8.8:*:*:*:*:*:*:* |
|
First Time |
Oracle http Server
Oracle zfs Storage Appliance Kit |
20 Apr 2022, 00:16
Type | Values Removed | Values Added |
---|---|---|
References |
|
24 Jan 2022, 20:30
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo | |
CVSS |
v2 : v3 : |
v2 : 4.9
v3 : 5.5 |
First Time |
Oracle
Oracle solaris |
|
References | (MISC) https://www.oracle.com/security-alerts/cpujan2022.html - Vendor Advisory | |
CPE | cpe:2.3:o:oracle:solaris:11:*:*:*:*:*:*:* |
19 Jan 2022, 12:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-01-19 12:15
Updated : 2023-12-10 14:09
NVD link : CVE-2022-21375
Mitre link : CVE-2022-21375
CVE.ORG link : CVE-2022-21375
JSON object : View
Products Affected
oracle
- solaris
- http_server
- zfs_storage_appliance_kit
CWE