PT-2009-6259 · Sun · Sun Solaris+1
Published
2009-11-27
·
Updated
2018-10-30
·
CVE-2009-4080
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Sun Solaris versions 9 and 10
OpenSolaris versions prior to snv 78
Description
The issue affects the ldap cachemgr daemon, allowing local users to cause a denial of service through certain vectors, including multiple serviceSearchDescriptor attributes and a call to the getldap lookup function.
Recommendations
For Sun Solaris versions 9 and 10, update to a version that includes the fix for this issue.
For OpenSolaris versions prior to snv 78, update to a version snv 78 or later.
As a temporary workaround, consider restricting access to the ldap cachemgr daemon to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Opensolaris
Sun Solaris