Vulnerability record · CVE-2009-2857 · published 19 August 2009
CVE-2009-2857: Oracle opensolaris vulnerability
Oracle · Opensolaris
The kernel in Sun Solaris 8, 9, and 10, and OpenSolaris before snv_103, does not properly handle interaction between the filesystem and virtual-memory implementations, which allows local users to cause a denial of service (deadlock and system halt) via vectors involving mmap and write operations on the same file.
Description
The kernel in Sun Solaris 8, 9, and 10, and OpenSolaris before snv_103, does not properly handle interaction between the filesystem and virtual-memory implementations, which allows local users to cause a denial of service (deadlock and system halt) via vectors involving mmap and write operations on the same file.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected products
2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://secunia.com/advisories/36319 | Broken LinkVendor Advisory |
| http://sunsolve.sun.com/search/document.do?assetkey=1-21-127721-02-1 | Broken LinkPatch |
| http://sunsolve.sun.com/search/document.do?assetkey=1-66-257848-1 | Broken LinkPatchVendor Advisory |
| http://www.vupen.com/english/advisories/2009/2291 | Broken LinkVendor Advisory |
| https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6152 | Broken Link |
| http://secunia.com/advisories/36319 | Broken LinkVendor Advisory |
| http://sunsolve.sun.com/search/document.do?assetkey=1-21-127721-02-1 | Broken LinkPatch |
| http://sunsolve.sun.com/search/document.do?assetkey=1-66-257848-1 | Broken LinkPatchVendor Advisory |
| http://www.vupen.com/english/advisories/2009/2291 | Broken LinkVendor Advisory |
| https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6152 | Broken Link |
Track CVE-2009-2857 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2009-2857), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.