CVE-2009-2857: Medium severity oracle solaris and zettabyte file system (zfs) vulnerability
The kernel in Sun Solaris 8, 9, and 10, and OpenSolaris before snv103, does not properly handle interaction between the filesystem and virtual-memory implementations, which allows local users to cause a denial of service (deadlock and system halt) via vectors involving mmap and write operations on the same file.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2857?
CVE-2009-2857 has a severity rating of medium due to its potential to cause denial of service.
How do I fix CVE-2009-2857?
To fix CVE-2009-2857, upgrade to a version of Solaris or OpenSolaris that is patched for this vulnerability.
Who is affected by CVE-2009-2857?
CVE-2009-2857 affects users of Solaris 8, 9, and 10, as well as OpenSolaris prior to snv_102.
What vulnerabilities are related to CVE-2009-2857?
CVE-2009-2857 is related to vulnerabilities that affect the interaction between the filesystem and virtual-memory implementations.
Is there a workaround for CVE-2009-2857?
There is no documented workaround for CVE-2009-2857 other than upgrading to a patched version of the affected software.