PT-2009-4588 · Sun+1 · Opensolaris+2
Published
2009-06-19
·
Updated
2009-09-17
·
CVE-2009-2136
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Sun Solaris versions 10
OpenSolaris versions snv 01 through snv 82
OpenSolaris versions snv 111 through snv 117
Description
The issue affects the TCP/IP networking stack when a Cassini GigaSwift Ethernet Adapter interface is used. It allows remote attackers to cause a denial of service, resulting in a system panic, via vectors involving jumbo frames.
Recommendations
For Sun Solaris version 10, consider disabling the use of Cassini GigaSwift Ethernet Adapter interfaces until a fix is available.
For OpenSolaris versions snv 01 through snv 82, restrict the use of jumbo frames on Cassini GigaSwift Ethernet Adapter interfaces to minimize the risk of exploitation.
For OpenSolaris versions snv 111 through snv 117, avoid using Cassini GigaSwift Ethernet Adapter interfaces with jumbo frames enabled until the issue is resolved.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cassini Gigaswift Ethernet Adapter
Opensolaris
Sun Solaris