PT-2009-3510 · Oracle · Solaris

Published

2009-03-17

·

Updated

2017-09-29

·

CVE-2009-0923

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Solaris versions 10 and OpenSolaris snv 01 through snv 110
Description The issue affects the Kerberos Incremental Propagation in Solaris, allowing remote attackers to cause a denial of service. This is related to the master Key Distribution Center (KDC) server, but the specific vectors used by the attackers are unknown. The denial of service results in the loss of incremental propagation requests to slave KDC servers.
Recommendations For Solaris 10 and OpenSolaris snv 01 through snv 110, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-0923

Affected Products

Solaris