Vulnerabilities > CVE-2009-2296 - Unspecified vulnerability in SUN Opensolaris
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN sun
nessus
Summary
The NFSv4 server kernel module in Sun Solaris 10, and OpenSolaris before snv_119, does not properly implement the nfs_portmon setting, which allows remote attackers to access shares, and read, create, and modify arbitrary files, via unspecified vectors.
Vulnerable Configurations
Nessus
NASL family Solaris Local Security Checks NASL id SOLARIS10_139991.NASL description SunOS 5.10: nfssrv patch. Date this patch was last updated by Sun : Jun/29/09 last seen 2018-09-01 modified 2018-08-13 plugin id 38823 published 2009-05-19 reporter Tenable source https://www.tenable.com/plugins/index.php?view=single&id=38823 title Solaris 10 (sparc) : 139991-03 NASL family Solaris Local Security Checks NASL id SOLARIS10_X86_140109.NASL description SunOS 5.10_x86: nfssrv patch. Date this patch was last updated by Sun : Jun/29/09 last seen 2018-09-01 modified 2018-08-13 plugin id 38826 published 2009-05-19 reporter Tenable source https://www.tenable.com/plugins/index.php?view=single&id=38826 title Solaris 10 (x86) : 140109-03
References
- http://osvdb.org/55519
- http://osvdb.org/55519
- http://secunia.com/advisories/35672
- http://secunia.com/advisories/35672
- http://secunia.com/advisories/42550
- http://secunia.com/advisories/42550
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-139991-03-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-139991-03-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-262668-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-262668-1
- http://www.securityfocus.com/bid/35546
- http://www.securityfocus.com/bid/35546
- http://www.securitytracker.com/id?1022492
- http://www.securitytracker.com/id?1022492
- http://www.vupen.com/english/advisories/2009/1747
- http://www.vupen.com/english/advisories/2009/1747
- https://exchange.xforce.ibmcloud.com/vulnerabilities/51450
- https://exchange.xforce.ibmcloud.com/vulnerabilities/51450
- https://support.avaya.com/css/P8/documents/100058487
- https://support.avaya.com/css/P8/documents/100058487