Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2013-3838


Unspecified vulnerability in Oracle SPARC Enterprise T & M Series Servers running Sun System Firmware before 6.7.13 for SPARC T1, 7.4.6.c for SPARC T2, 8.3.0.b for SPARC T3 & T4, 9.0.0.d for SPARC T5 and 9.0.1.e for SPARC M5 allows local users to affect availability via unknown vectors related to Sun System Firmware/Hypervisor.


Published

2013-10-16T15:55:33.990

Last Modified

2025-04-11T00:51:21.963

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.0 (MEDIUM)

CVSSv2 Vector

AV:L/AC:H/Au:N/C:N/I:N/A:C

  • Access Vector: LOCAL
  • Access Complexity: HIGH
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: COMPLETE
Exploitability Score

1.9

Impact Score

6.9

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System oracle sun_system_firmware ≤ 6.7.12 Yes
Operating System oracle sun_system_firmware ≤ 7.4.6 Yes
Operating System oracle sun_system_firmware ≤ 8.3.0 Yes
Operating System oracle sun_system_firmware ≤ 9.0.0 Yes
Operating System oracle sun_system_firmware ≤ 9.0.1 Yes
Hardware oracle sparc_enterprise_m8000_server - Yes
Hardware oracle sparc_enterprise_m9000_server - Yes
Hardware oracle sparc_t3-1 - Yes
Hardware oracle sparc_t3-1b - Yes
Hardware oracle sparc_t3-2 - Yes
Hardware oracle sparc_t3-3 - Yes
Hardware oracle sparc_t3-4 - Yes
Hardware oracle sparc_t4-1 - Yes
Hardware oracle sparc_t4-1b - Yes
Hardware oracle sparc_t4-2 - Yes
Hardware oracle sparc_t4-4 - Yes

References