PT-2009-4588 · Sun+1 · Opensolaris+2

Published

2009-06-19

·

Updated

2009-09-17

·

CVE-2009-2136

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Sun Solaris versions 10 OpenSolaris versions snv 01 through snv 82 OpenSolaris versions snv 111 through snv 117
Description The issue affects the TCP/IP networking stack when a Cassini GigaSwift Ethernet Adapter interface is used. It allows remote attackers to cause a denial of service, resulting in a system panic, via vectors involving jumbo frames.
Recommendations For Sun Solaris version 10, consider disabling the use of Cassini GigaSwift Ethernet Adapter interfaces until a fix is available. For OpenSolaris versions snv 01 through snv 82, restrict the use of jumbo frames on Cassini GigaSwift Ethernet Adapter interfaces to minimize the risk of exploitation. For OpenSolaris versions snv 111 through snv 117, avoid using Cassini GigaSwift Ethernet Adapter interfaces with jumbo frames enabled until the issue is resolved.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-2136

Affected Products

Cassini Gigaswift Ethernet Adapter
Opensolaris
Sun Solaris