CVE-2009-4080: Low severity oracle solaris and zettabyte file system (zfs) vulnerability

Published Nov 27, 2009
·
Updated

Multiple unspecified vulnerabilities in ldapcachemgr (aka the LDAP client configuration cache daemon) in Sun Solaris 9 and 10, and OpenSolaris before snv78, allow local users to cause a denial of service (daemon crash) via vectors involving multiple serviceSearchDescriptor attributes and a call to the getldaplookup function, and unspecified other vectors.

Affected Software

78 affected components
Sun OpenSolaris=snv_14
Sun OpenSolaris=snv_01
Sun OpenSolaris=snv_67
Sun OpenSolaris=snv_12
Sun OpenSolaris=snv_57
Sun OpenSolaris=snv_47
Sun OpenSolaris=snv_32
Sun OpenSolaris=snv_70
Sun OpenSolaris=snv_34
Sun OpenSolaris=snv_08
Sun OpenSolaris=snv_66
Sun OpenSolaris=snv_75
Sun OpenSolaris=snv_25
Sun OpenSolaris=snv_07
Sun OpenSolaris=snv_21
Sun OpenSolaris<=snv_77
Sun OpenSolaris=snv_51
Sun OpenSolaris=snv_45
Sun OpenSolaris=snv_52
Sun OpenSolaris=snv_68
Sun OpenSolaris=snv_41
Sun OpenSolaris=snv_20
Sun OpenSolaris=snv_54
Sun OpenSolaris=snv_76
Sun OpenSolaris=snv_33
Sun OpenSolaris=snv_26
Sun OpenSolaris=snv_17
Sun OpenSolaris=snv_05
Sun OpenSolaris=snv_15
Sun OpenSolaris=snv_48
Sun OpenSolaris=snv_42
Sun OpenSolaris=snv_69
Sun SunOS=5.8
Sun OpenSolaris=snv_44
Sun OpenSolaris=snv_73
Sun OpenSolaris=snv_61
Sun OpenSolaris=snv_35
Sun OpenSolaris=snv_38
Sun OpenSolaris=snv_56
Sun OpenSolaris=snv_28
Sun OpenSolaris=snv_74
Sun OpenSolaris=snv_16
Sun OpenSolaris=snv_19
Sun SunOS=5.10
Sun SunOS=5.9
Sun OpenSolaris=snv_50
Sun OpenSolaris=snv_27
Sun OpenSolaris=snv_06
Sun OpenSolaris=snv_02
Sun OpenSolaris=snv_22
Sun OpenSolaris=snv_59
Sun OpenSolaris=snv_63
Sun OpenSolaris=snv_49
Sun OpenSolaris=snv_39
Sun OpenSolaris=snv_71
Sun OpenSolaris=snv_64
Sun OpenSolaris=snv_46
Sun OpenSolaris=snv_60
Sun OpenSolaris=snv_72
Sun OpenSolaris=snv_29
Sun OpenSolaris=snv_58
Sun OpenSolaris=snv_40
Sun OpenSolaris=snv_37
Sun OpenSolaris=snv_36
Sun OpenSolaris=snv_43
Sun OpenSolaris=snv_03
Sun OpenSolaris=snv_11
Sun OpenSolaris=snv_24
Sun OpenSolaris=snv_04
Sun OpenSolaris=snv_55
Sun OpenSolaris=snv_62
Sun OpenSolaris=snv_65
Sun OpenSolaris=snv_31
Sun OpenSolaris=snv_53
Sun OpenSolaris=snv_09
Sun OpenSolaris=snv_18
Sun OpenSolaris=snv_30
Sun OpenSolaris=snv_23

Event History

Nov 27, 2009
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description

Frequently Asked Questions

1

What is the severity of CVE-2009-4080?

CVE-2009-4080 is classified as a denial of service vulnerability affecting Sun Solaris.

2

How do I fix CVE-2009-4080?

To resolve CVE-2009-4080, update your Sun Solaris system to the latest version available that addresses the vulnerability.

3

What versions of Solaris are affected by CVE-2009-4080?

CVE-2009-4080 affects multiple versions of Sun Solaris, including Solaris 9 and 10, as well as OpenSolaris before snv_78.

4

What kind of exploit does CVE-2009-4080 allow?

CVE-2009-4080 allows local users to exploit the vulnerabilities, potentially causing the ldap_cachemgr daemon to crash.

5

Is there a patch available for CVE-2009-4080?

Yes, Sun has released patches for CVE-2009-4080 that you can apply to affected Solaris systems.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203