PT-2009-5312 · Sun · Sun Solaris

Published

2009-08-27

·

Updated

2017-09-19

·

CVE-2009-2972

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Sun Solaris versions 8 and 9
Description: The issue allows remote attackers to cause a denial of service, specifically memory consumption, via unspecified vectors that trigger a "fork()/exec() bomb" in the in.lpd service of the print service.
Recommendations: For Sun Solaris versions 8 and 9, consider disabling the in.lpd service in the print service as a temporary workaround to minimize the risk of exploitation. Restrict access to the print service to prevent remote attackers from triggering the denial of service.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-2972

Affected Products

Sun Solaris