Vulnerability Description
The patches (1) 114332-08 and (2) 114929-06 for Sun Solaris 9 disable the auditing functionality of the Basic Security Module (BSM), which allows attackers to avoid having their activity logged.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sun | Solaris | 9.0 |
References
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-57478-1&searchclause=%2PatchVendor Advisory
- http://www.auscert.org.au/render.html?it=3788PatchVendor Advisory
- http://www.ciac.org/ciac/bulletins/o-099.shtmlPatchVendor Advisory
- http://www.securityfocus.com/bid/9852Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14918
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-57478-1&searchclause=%2PatchVendor Advisory
- http://www.auscert.org.au/render.html?it=3788PatchVendor Advisory
- http://www.ciac.org/ciac/bulletins/o-099.shtmlPatchVendor Advisory
- http://www.securityfocus.com/bid/9852Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14918
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3
FAQ
What is CVE-2004-1358?
CVE-2004-1358 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The patches (1) 114332-08 and (2) 114929-06 for Sun Solaris 9 disable the auditing functionality of the Basic Security Module (BSM), which allows attackers to avoid having their activity logged.
How severe is CVE-2004-1358?
CVE-2004-1358 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-1358?
Check the references section above for vendor advisories and patch information. Affected products include: Sun Solaris.