Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-1999-1423Solaris vulnerability

4 documents4 sources
Severity
2.1LOWNVD
EPSS
0.7%
top 27.48%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedJun 26
Latest updateApr 30

Description

ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicast address through the loopback interface, e.g. via ping -i.

CVSS vector

AV:L/AC:L/C:N/I:N/A:PExploitability: 3.9 | Impact: 2.9

Affected Packages2 packages

NVDsun/solaris4 versions+3
NVDsun/sunos4 versions+3

Patches

🔴Vulnerability Details

2
GHSA
GHSA-c9v3-wqvp-m35p: ping in Solaris 22022-04-30
CVEList
CVE-1999-1423: ping in Solaris 22002-03-09

💥Exploits & PoCs

1
Exploit-DB
Solaris 2.5.1 - 'Ping' System Panic (Denial of Service)1997-06-15
CVE-1999-1423 — SUN Solaris vulnerability | cvebase