PT-2009-3467 · Sun · Sun Solaris+1

Published

2009-03-12

·

Updated

2009-04-02

·

CVE-2009-0875

CVSS v2.0

6.9

Medium

VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Sun Solaris versions 8 through 10 OpenSolaris versions prior to snv 94
Description A race condition exists in the Doors subsystem in the kernel, allowing local users to cause a denial of service, potentially bypass file permissions, or gain kernel-context privileges. This issue is related to the timing of control transfer from a caller to a door server.
Recommendations For Sun Solaris versions 8 through 10, consider applying a patch or fix to resolve the issue. For OpenSolaris versions prior to snv 94, update to a version after snv 94 to mitigate the risk. As a temporary workaround, consider restricting access to the Doors subsystem to minimize the risk of exploitation.

Fix

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-0875

Affected Products

Opensolaris
Sun Solaris