New Search

A Security Vulnerability in the Solaris ip(7P) Kernel Module's IP-in-IP Packet Processing May Lead to a Denial of Service (DoS)

oval:org.mitre.oval:def:6088

The IP-in-IP packet processing implementation in the IPsec and IP stacks in the kernel in Sun Solaris 9 and 10 and OpenSolaris snv_01 though snv_85 allows local users to cause a denial of service (panic) via a self-encapsulated packet that lacks IPsec protection.

Family:
unix
Status:
ACCEPTED
Platform(s):
  • Sun Solaris 9
  • Sun Solaris 10
Class:
vulnerability
Reference(s):
  • CVE-2009-0346
Product(s):