PT-2009-3467 · Sun · Sun Solaris+1
Publicado
2009-03-12
·
Atualizado
2009-04-02
·
CVE-2009-0875
CVSS v2.0
6.9
Média
| Vetor | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Sun Solaris versions 8 through 10
OpenSolaris versions prior to snv 94
Description
A race condition exists in the Doors subsystem in the kernel, allowing local users to cause a denial of service, potentially bypass file permissions, or gain kernel-context privileges. This issue is related to the timing of control transfer from a caller to a door server.
Recommendations
For Sun Solaris versions 8 through 10, consider applying a patch or fix to resolve the issue.
For OpenSolaris versions prior to snv 94, update to a version after snv 94 to mitigate the risk.
As a temporary workaround, consider restricting access to the Doors subsystem to minimize the risk of exploitation.
Correção
Race Condition
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Opensolaris
Sun Solaris