The embedded Linux kernel in certain Sun-Brocade SilkWorm switches before 20070516 does not properly handle a situation in which a non-root user creates a kernel process, which allows attackers to cause a denial of service (oops and device reboot) via unspecified vectors.
References
Link | Resource |
---|---|
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102752-1 | Broken Link Patch |
http://www.securityfocus.com/bid/24036 | Patch Third Party Advisory VDB Entry |
http://osvdb.org/39117 | Broken Link |
https://exchange.xforce.ibmcloud.com/vulnerabilities/34495 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2007-05-18 15:30
Updated : 2019-08-14 04:29
NVD link : CVE-2007-2764
Mitre link : CVE-2007-2764
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
brocade
- silkworm_3850_fabric_switch
- silkworm_24000_director
- silkworm_12000_director
- silkworm_48000_director
- silkworm_3900_switch
- silkworm_3250_fabric_switch
- silkworm_200e_switch
- silkworm_4900_fibre_channel_switch
linux
- linux_kernel