PT-2009-2936 · Sun · Opensolaris+1
Published
2009-01-26
·
Updated
2017-09-29
·
CVE-2009-0268
CVSS v2.0
4.9
Medium
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Sun Solaris versions 8 through 10
OpenSolaris versions prior to snv 103
Description
A race condition exists in the pseudo-terminal driver module, allowing local users to cause a denial of service via unspecified vectors related to a lack of properly sequenced code in
ptc and ptsl.Recommendations
For Sun Solaris versions 8 through 10, update to a version outside of the affected range.
For OpenSolaris versions prior to snv 103, update to version snv 103 or later.
As a temporary workaround, consider restricting access to the pseudo-terminal driver module to minimize the risk of exploitation.
Fix
Race Condition
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Opensolaris
Sun Solaris