CVE-2009-4075

OpenSolaris snv_99-snv_123 - Denial of Service via SSH Authentication Thread Timeout

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in the timeout mechanism in sshd in Sun Solaris 10, and OpenSolaris snv_99 through snv_123, allows remote attackers to cause a denial of service (daemon outage) via unknown vectors that trigger a "dangling sshd authentication thread."

References (6)

Core 6
Core References
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/3333
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/60498
Patch, Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-66-272629-1
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/54401
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/37116

Scores

EPSS 0.0169
EPSS Percentile 82.5%

Details

Status published
Products (25)
sun/opensolaris snv_99 (2 CPE variants)
sun/opensolaris snv_100 (2 CPE variants)
sun/opensolaris snv_101 (2 CPE variants)
sun/opensolaris snv_102 (2 CPE variants)
sun/opensolaris snv_103 (2 CPE variants)
sun/opensolaris snv_104 (2 CPE variants)
sun/opensolaris snv_105 (2 CPE variants)
sun/opensolaris snv_106 (2 CPE variants)
sun/opensolaris snv_107 (2 CPE variants)
sun/opensolaris snv_108 (2 CPE variants)
... and 15 more
Published Nov 25, 2009
Tracked Since Feb 18, 2026