Skip to content

J-Security Center

Latest Attack Object Updates
  • IDP Daily Update #1312
    posted: 11/18/08
  • NSM Daily Update #1312
    posted: 11/18/08
  • Deep Inspection 5.3r5 and above, 5.4, 6.0 #1312
    posted: 11/18/08
  • Deep Inspection 5.1, 5.2, 5.3r4 and below #1300
    posted: 11/18/08
  • Deep Inspection 5.0 #1132
    posted: 04/01/08
  • Antivirus
    posted: 11/17/08

Title: Sun Solaris NFSv4 Client Kernel Module Local Denial of Service Vulnerability

Severity: LOW

Description:

Sun Solaris is an operating system developed by Sun Microsystems.

Solaris is prone to a local denial-of-service vulnerability that affects the NFSv4 client kernel module.

Technical details are currently unavailable. We will update this BID as soon as more information emerges.

Local unprivileged attackers who cooperate with a remote privileged victim on an NFSv4 server may exploit this issue to cause all NFSv4 mounts to become unresponsive, denying service to legitimate users.

Affected Products:

  • Sun OpenSolaris build snv_01
  • Sun OpenSolaris build snv_02
  • Sun OpenSolaris build snv_13
  • Sun OpenSolaris build snv_19
  • Sun OpenSolaris build snv_22
  • Sun OpenSolaris build snv_36
  • Sun Solaris 10.0
  • Sun Solaris 10.0_x86

References: