MEDIUM · 4.7

CVE-2009-0870

The NFSv4 Server module in the kernel in Sun Solaris 10, and OpenSolaris before snv_111, allow local users to cause a denial of service (infinite loop and system hang) by accessing an hsfs filesystem ...

Vulnerability Description

The NFSv4 Server module in the kernel in Sun Solaris 10, and OpenSolaris before snv_111, allow local users to cause a denial of service (infinite loop and system hang) by accessing an hsfs filesystem that is shared through NFSv4, related to the rfs4_op_readdir function.

CVSS Score

4.7

MEDIUM

AV:L/AC:M/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
SunOpensolarissnv_01
SunSolaris10.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2009-0870?

CVE-2009-0870 is a vulnerability with a CVSS score of 4.7 (MEDIUM). The NFSv4 Server module in the kernel in Sun Solaris 10, and OpenSolaris before snv_111, allow local users to cause a denial of service (infinite loop and system hang) by accessing an hsfs filesystem ...

How severe is CVE-2009-0870?

CVE-2009-0870 has been rated MEDIUM with a CVSS base score of 4.7/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2009-0870?

Check the references section above for vendor advisories and patch information. Affected products include: Sun Opensolaris, Sun Solaris.