Solaris 10 (x86) : 145334-37

This script is Copyright (C) 2013-2017 Tenable Network Security, Inc.


Synopsis :

The remote host is missing Sun Security Patch number 145334-37

Description :

Vulnerability in the Solaris Cluster component of Oracle Sun Systems
Products Suite (subcomponent: System management). Supported versions
that are affected are 3.3 and 4.1. Easily exploitable vulnerability
allows successful authenticated network attacks via TCP/IP. Successful
attack of this vulnerability can result in unauthorized Operating
System takeover including arbitrary code execution.

Vulnerability in the Solaris Cluster component of Oracle Sun Systems
Products Suite (subcomponent: System management). Supported versions
that are affected are 3.3 and 4.1. Easily exploitable vulnerability
requiring logon to Operating System plus additional, multiple logins
to components. Successful attack of this vulnerability can escalate
attacker privileges resulting in unauthorized Operating System
takeover including arbitrary code execution.

See also :

https://getupdates.oracle.com/readme/145334-37

Solution :

You should install this patch for your system to be up-to-date.

Risk factor :

High / CVSS Base Score : 9.0
(CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C)

Family: Solaris Local Security Checks

Nessus Plugin ID: 71706 ()

Bugtraq ID:

CVE ID: CVE-2014-4259
CVE-2014-6480
CVE-2015-2616

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now