CVE-2020-14871: critical vulnerability in Oracle Corporation Solaris Operating System
Published · Updated
100Vexday Risk Score
Patch now. It under exploitation confirmed by CISA and has a working public exploit.
ssvc Actcvss 10epss 80%
from disclosure to weapon55 days
Published on NVDOct 21
1st PoC+55d
metasploitOct 20
CISA KEV+378d
exploitation probability
80%top 1% of all CVEs
observed exploitation
yesCISA + VulnCheck
11 public exploit(s)
Action required by CISAfederal deadline: 2022-05-03
Apply updates per vendor instructions.
In short
A critical flaw in Oracle Solaris authentication allows attackers on the network to take complete control of the system without needing valid credentials. This is a severe vulnerability that affects core system security.
Technical detail
Out-of-bounds write vulnerability (CWE-787) in the Pluggable Authentication Module (PAM) component of Oracle Solaris 10 and 11. Unauthenticated remote attackers can exploit this via multiple network protocols with no preconditions, achieving complete system compromise including confidentiality, integrity, and availability breaches. Not exploitable in Solaris 11.1+ and ZFSSA 8.7+.
Summary generated and translated by AI from the official description.
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Pluggable authentication module). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Solaris. While the vulnerability is in Oracle Solaris, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle Solaris. Note: This CVE is not exploitable for Solaris 11.1 and later releases, and ZFSSA 8.7 and later releases, thus the CVSS Base Score is 0.0. CVSS 3.1 Base Score 10.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H).