CVE-2009-3000

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
28/08/2009
Last modified:
09/04/2025

Description

The sockfs module in the kernel in Sun Solaris 10 and OpenSolaris snv_41 through snv_122, when Network Cache Accelerator (NCA) logging is enabled, allows remote attackers to cause a denial of service (panic) via unspecified web-server traffic that triggers a NULL pointer dereference in the nl7c_http_log function, related to "improper http response handling."

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:sun:opensolaris:snv_41:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_42:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_43:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_44:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_45:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_46:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_47:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_48:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_49:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_50:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_51:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_52:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_53:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_54:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:snv_55:*:sparc:*:*:*:*:*