PT-2009-3466 · Sun · Sun Solaris+1
Publicado
2009-03-12
·
Atualizado
2009-04-02
·
CVE-2009-0874
CVSS v2.0
4.9
Média
| Vetor | AV:L/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Sun Solaris versions 8 through 10
OpenSolaris versions prior to snv 94
Description
The issue affects the Doors subsystem in the kernel, allowing local users to cause a denial of service, bypass file permissions, or gain kernel-context privileges. This can be achieved through vectors including an argument handling deadlock in a door server and watchpoint problems in the
door call function.Recommendations
For Sun Solaris versions 8 through 10, consider applying a patch or fix to address the argument handling deadlock and watchpoint problems in the door call function.
For OpenSolaris versions prior to snv 94, update to a version after snv 94 to resolve the issue.
As a temporary workaround, consider restricting access to the Doors subsystem to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Opensolaris
Sun Solaris