CVE-2007-5726
Unspecified vulnerability in the Stream Control Transmission Protocol (sctp) functionality in Sun Solaris 10, when at least one SCTP socket is in the LISTEN state, allows remote attackers to cause a denial of service (panic) via unspecified vectors…
Does this matter?
Lower severity and a low EPSS score (2.31%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the Stream Control Transmission Protocol (sctp) functionality in Sun Solaris 10, when at least one SCTP socket is in the LISTEN state, allows remote attackers to cause a denial of service (panic) via unspecified vectors related to "INIT processing."
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:C
- EPSS
- 2.31% probability · 82th percentile
- CISA KEV
- Not listed
- Affected
- sun/solaris
- Source
- cve@mitre.org
References
- http://osvdb.org/40815
- http://secunia.com/advisories/27428
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-103101-1Patch
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-201252-1
- http://www.securityfocus.com/bid/26224
- http://www.securitytracker.com/id?1018867
- http://www.vupen.com/english/advisories/2007/3633
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38126
- http://osvdb.org/40815
- http://secunia.com/advisories/27428
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-103101-1Patch
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-201252-1
- http://www.securityfocus.com/bid/26224
- http://www.securitytracker.com/id?1018867
- http://www.vupen.com/english/advisories/2007/3633
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38126
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.