Solaris 7.0 - Recursive mutex_enter Remote Panic (Denial of Service)



EKU-ID: 25105 CVE: CVE-1999-0908;OSVDB-1080 OSVDB-ID:
Author: David Brumley Published: 1999-09-23 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/655/info

A vulnerability in Solaris TCP/IP stack may allow remote users to panic the system.

If the nmap network mapping utility is used with the OS fingerprinting option ('-O') against an active listening port and the server listening on that port is then killed the system will panic because of recursive calls to mutex_enter within the TCP streams driver.

$nmap -O -p 80 targethost.com