CVE-2009-0346 Information

Description

The IP-in-IP packet processing implementation in the IPsec and IP stacks in the kernel in Sun Solaris 9 and 10 and OpenSolaris snv_01 though snv_85 allows local users to cause a denial of service (panic) via a self-encapsulated packet that lacks IPsec protection.

Reference

http://secunia.com/advisories/33727 http://sunsolve.sun.com/search/document.do?assetkey=1-21-114344-38-1 http://sunsolve.sun.com/search/document.do?assetkey=1-66-240086-1 http://support.avaya.com/elmodocs2/security/ASA-2009-043.htm http://www.securityfocus.com/bid/33504 http://www.vupen.com/english/advisories/2009/0365 https://exchange.xforce.ibmcloud.com/vulnerabilities/48328 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A6088

Share on: