CVE-2009-2137: High severity Sun OpenSolaris vulnerability

Published Jun 19, 2009
·
Updated

Memory leak in the Ultra-SPARC T2 crypto provider device driver (aka n2cp) in Sun Solaris 10, and OpenSolaris snv54 through snv112, allows context-dependent attackers to cause a denial of service (memory consumption) via unspecified vectors related to a large keylen value.

Affected Software

60 affected components
Sun OpenSolaris=snv_101
Sun OpenSolaris=snv_57
Sun OpenSolaris=snv_87
Sun OpenSolaris=snv_73
Sun OpenSolaris=snv_91
Sun OpenSolaris=snv_85
Sun OpenSolaris=snv_74
Sun OpenSolaris=snv_104
Sun OpenSolaris=snv_103
Sun OpenSolaris=snv_66
Sun OpenSolaris=snv_105
Sun OpenSolaris=snv_82
Sun OpenSolaris=snv_72
Sun OpenSolaris=snv_88
Sun OpenSolaris=snv_56
Sun OpenSolaris=snv_93
Sun OpenSolaris=snv_54
Sun OpenSolaris=snv_65
Sun OpenSolaris=snv_106
Sun OpenSolaris=snv_107
Sun OpenSolaris=snv_71
Sun OpenSolaris=snv_64
Sun OpenSolaris=snv_77
Sun OpenSolaris=snv_61
Sun OpenSolaris=snv_79
Sun OpenSolaris=snv_90
Sun OpenSolaris=snv_112
Sun OpenSolaris=snv_70
Sun OpenSolaris=snv_59
Sun OpenSolaris=snv_97
Sun OpenSolaris=snv_83
Sun OpenSolaris=snv_100
Sun OpenSolaris=snv_96
Sun OpenSolaris=snv_81
Sun OpenSolaris=snv_94
Sun OpenSolaris=snv_86
Sun OpenSolaris=snv_98
Sun OpenSolaris=snv_111
Sun OpenSolaris=snv_80
Sun OpenSolaris=snv_68
Sun OpenSolaris=snv_67
Sun OpenSolaris=snv_95
Sun OpenSolaris=snv_108
Sun OpenSolaris=snv_78
Sun OpenSolaris=snv_76
Sun OpenSolaris=snv_55
Sun OpenSolaris=snv_69
Sun OpenSolaris=snv_84
Sun OpenSolaris=snv_60
Sun OpenSolaris=snv_92
Sun OpenSolaris=snv_63
Sun OpenSolaris=snv_58
Sun OpenSolaris=snv_99
Sun OpenSolaris=snv_109
Sun OpenSolaris=snv_75
Sun OpenSolaris=snv_102
Sun Solaris=10
Sun OpenSolaris=snv_110
Sun OpenSolaris=snv_62
Sun OpenSolaris=snv_89

Event History

Jun 19, 2009
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2009-2137?

CVE-2009-2137 has a severity rating that indicates it can cause a denial of service due to memory consumption.

2

How do I fix CVE-2009-2137?

To fix CVE-2009-2137, you should apply the latest patches or updates provided by Sun for the affected versions of Solaris.

3

Which versions of Solaris are affected by CVE-2009-2137?

CVE-2009-2137 affects Sun Solaris 10 and OpenSolaris from snv_54 through snv_112.

4

What type of vulnerability is CVE-2009-2137?

CVE-2009-2137 is a memory leak vulnerability in the Ultra-SPARC T2 crypto provider device driver.

5

What can attackers do with CVE-2009-2137?

Attackers can exploit CVE-2009-2137 to cause a denial of service through excessive memory consumption by manipulating the keylen value.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203