CVE-2009-0873: Medium severity Sun OpenSolaris vulnerability
The NFS daemon (aka nfsd) in Sun Solaris 10 and OpenSolaris before snv106, when NFSv3 is used, does not properly implement combinations of security modes, which allows remote attackers to bypass intended access restrictions and read or modify files, as demonstrated by a combination of the sec=sys and sec=krb5 security modes, related to modes that "override each other."
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
OpenSolaristo a version that resolves this vulnerability.Fixed in snv_106 - Configuration
Reconfigure NFSv3 export security settings so that exports do not include both sec=sys and sec=krb5 (remove one of these modes from the export configuration to avoid the combination that allows privilege/authorization bypass).
NFS daemon (nfsd) / NFSv3 exports security modes = do not allow sec=sys together with sec=krb5
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0873?
CVE-2009-0873 has a high severity rating due to the potential for remote attackers to bypass access restrictions.
How do I fix CVE-2009-0873?
To fix CVE-2009-0873, update your NFS daemon to a version that mitigates the security issue, specifically a patched version of Solaris.
What types of systems are affected by CVE-2009-0873?
CVE-2009-0873 affects multiple versions of Sun Solaris 10 and OpenSolaris before snv_106 that utilize NFSv3.
What are the potential risks of CVE-2009-0873?
The risks associated with CVE-2009-0873 include unauthorized access to files, which could lead to data breaches or file modifications.
Is there a patch available for CVE-2009-0873?
Yes, patches are available for CVE-2009-0873, and users are advised to apply them as soon as possible.