PT-2009-3467 · Sun · Sun Solaris+1
Published
2009-03-12
·
Updated
2009-04-02
·
CVE-2009-0875
CVSS v2.0
6.9
Medium
| Vector | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Sun Solaris versions 8 through 10
OpenSolaris versions prior to snv 94
Description
A race condition exists in the Doors subsystem in the kernel, allowing local users to cause a denial of service, potentially bypass file permissions, or gain kernel-context privileges. This issue is related to the timing of control transfer from a caller to a door server.
Recommendations
For Sun Solaris versions 8 through 10, consider applying a patch or fix to resolve the issue.
For OpenSolaris versions prior to snv 94, update to a version after snv 94 to mitigate the risk.
As a temporary workaround, consider restricting access to the Doors subsystem to minimize the risk of exploitation.
Fix
Race Condition
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Opensolaris
Sun Solaris