HOME > VULNERABILITY NOTES


   VULNERABILITY NOTE

CERT-In Vulnerability Note CIVN-2008-87
Denial of Service (DoS) Vulnerability in the Solaris e1000g(7D) Gigabit Ethernet Driver

Original Issue Date: June 19, 2008

Severity Rating: Low

System Affected

  • Solaris 10

Overview

A vulnerability has been reported in the Solaris e1000g(7D) Gigabit Ethernet Driver that may lead to Denial of Service (DoS).

Description

A vulnerability in Solaris e1000g (7D) Gigabit Ethernet driver exists on systems with Intel 82571/82572 network interface controllers. A remote unprivileged user may able to block all inbound network packets by exploiting this vulnerability. Blocking of all inbound network packets may lead to Denial of Service (DoS).

Solutions

Vendor has suggested applying the patches as follows
  • SPARC Platform
    • Solaris 10 with patch 137289-01 or later
  • x86 Platform
    • Solaris 10 with patch 137293-01 or later

Vendor Information

SUN
http://sunsolve.sun.com/search/printfriendly.do?
assetkey=1-66-238250-1

References

SUN
http://sunsolve.sun.com/search/printfriendly.do?
assetkey=1-66-238250-1

AusCERT
http://www.auscert.org.au/render.html?it=9457

Secunia
http://secunia.com/advisories/30700/

Disclaimer

The information provided herein is on "as is" basis, without warranty of any kind.

Contact Information


Phone: +91-11-24368572

Postal address

Indian Computer Emergency Response Team (CERT-In)
Ministry of Communications and Information Technology
Electronics Niketan
6, C.G.O. Complex
New Delhi-110 003