7.8
CVE-2007-2764
- EPSS 0.96%
- Veröffentlicht 18.05.2007 22:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
The embedded Linux kernel in certain Sun-Brocade SilkWorm switches before 20070516 does not properly handle a situation in which a non-root user creates a kernel process, which allows attackers to cause a denial of service (oops and device reboot) via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version-
Brocade ≫ Silkworm 12000 Director Version-
Brocade ≫ Silkworm 200e Switch Version-
Brocade ≫ Silkworm 24000 Director Version-
Brocade ≫ Silkworm 3250 Fabric Switch Version-
Brocade ≫ Silkworm 3850 Fabric Switch Version-
Brocade ≫ Silkworm 3900 Switch Version-
Brocade ≫ Silkworm 48000 Director Version-
Brocade ≫ Silkworm 4900 Fibre Channel Switch Version-
Brocade ≫ Silkworm 200e Switch Version-
Brocade ≫ Silkworm 24000 Director Version-
Brocade ≫ Silkworm 3250 Fabric Switch Version-
Brocade ≫ Silkworm 3850 Fabric Switch Version-
Brocade ≫ Silkworm 3900 Switch Version-
Brocade ≫ Silkworm 48000 Director Version-
Brocade ≫ Silkworm 4900 Fibre Channel Switch Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.96% | 0.743 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:C
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.