PT-2009-4638 · Sun · Sun Solaris 10+1

Publicado

2009-06-24

·

Atualizado

2009-06-25

·

CVE-2009-2187

CVSS v2.0

4.9

Média

VetorAV:L/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Sun Solaris 10 OpenSolaris versions snv 67 through snv 93
Description The issue is related to multiple memory leaks in the IP and IPv6 multicast implementation in the kernel. Local users can cause a denial of service due to memory consumption by exploiting the association of certain messages with ARP messages, specifically DL ENABMULTI REQ and DL DISABMULTI REQ messages.
Recommendations For Sun Solaris 10, apply the recommended patch to fix the memory leaks. For OpenSolaris versions snv 67 through snv 93, upgrade to a version later than snv 93 to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability for other versions.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2009-2187

Produtos afetados

Opensolaris
Sun Solaris 10