Executive Summary

Informations
NameCVE-2009-3899First vendor Publication2009-11-06
VendorCveLast vendor Modification2017-09-18

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:N/I:N/A:C)
Cvss Base Score7.8Attack RangeNetwork
Cvss Impact Score6.9Attack ComplexityLow
Cvss Expoit Score10AuthenticationNone Required
Calculate full CVSS 2.0 Vectors scores

Detail

Memory leak in the Sockets Direct Protocol (SDP) driver in Sun Solaris 10, and OpenSolaris snv_57 through snv_94, allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3899

CWE : Common Weakness Enumeration

%idName
100 %CWE-399Resource Management Errors

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:6563
 
Oval ID: oval:org.mitre.oval:def:6563
Title: A security vulnerability in Solaris Sockets Direct Protocol (SDP) driver (sdp(7D)) may allow a local or remote unprivileged user to exhaust all kernel memory
Description: Memory leak in the Sockets Direct Protocol (SDP) driver in Sun Solaris 10, and OpenSolaris snv_57 through snv_94, allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
Family: unix Class: vulnerability
Reference(s): CVE-2009-3899
Version: 1
Platform(s): Sun Solaris 10
Product(s):
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Os76
Os2

Open Source Vulnerability Database (OSVDB)

idDescription
59657Solaris Sockets Direct Protocol (SDP) driver (sdp(7D)) Unspecified Remote Ker...

Nessus® Vulnerability Scanner

DateDescription
2009-10-15Name : The remote host is missing Sun Security Patch number 141444-09
File : solaris10_141444.nasl - Type : ACT_GATHER_INFO
2009-10-15Name : The remote host is missing Sun Security Patch number 141445-09
File : solaris10_x86_141445.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

SourceUrl
BID http://www.securityfocus.com/bid/36904
CONFIRM http://sunsolve.sun.com/search/document.do?assetkey=1-21-141444-09-1
SECTRACK http://securitytracker.com/id?1023124
SUNALERT http://sunsolve.sun.com/search/document.do?assetkey=1-66-264730-1
VUPEN http://www.vupen.com/english/advisories/2009/3130

Alert History

If you want to see full details history, please login or register.
0
1
2
3
DateInformations
2017-09-19 09:23:29
  • Multiple Updates
2016-04-26 19:14:42
  • Multiple Updates
2014-02-17 10:52:16
  • Multiple Updates
2013-05-11 00:00:29
  • Multiple Updates