PT-2009-5312 · Sun · Sun Solaris
Published
2009-08-27
·
Updated
2017-09-19
·
CVE-2009-2972
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions:
Sun Solaris versions 8 and 9
Description:
The issue allows remote attackers to cause a denial of service, specifically memory consumption, via unspecified vectors that trigger a "fork()/exec() bomb" in the in.lpd service of the print service.
Recommendations:
For Sun Solaris versions 8 and 9, consider disabling the in.lpd service in the print service as a temporary workaround to minimize the risk of exploitation. Restrict access to the print service to prevent remote attackers from triggering the denial of service.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sun Solaris