CVE-2009-3000
Severity CVSS v4.0:
Pending analysis
Type:
CWE-399
Resource Management Errors
Publication date:
28/08/2009
Last modified:
09/04/2025
Description
The sockfs module in the kernel in Sun Solaris 10 and OpenSolaris snv_41 through snv_122, when Network Cache Accelerator (NCA) logging is enabled, allows remote attackers to cause a denial of service (panic) via unspecified web-server traffic that triggers a NULL pointer dereference in the nl7c_http_log function, related to "improper http response handling."
Impact
Base Score 2.0
7.10
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:sun:opensolaris:snv_41:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_42:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_43:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_44:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_45:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_46:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_47:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_48:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_49:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_50:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_51:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_52:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_53:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_54:*:sparc:*:*:*:*:* | ||
| cpe:2.3:o:sun:opensolaris:snv_55:*:sparc:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



