[] NeoSense

Solaris 7.0 - Recursive mutex_enter Remote Panic (Denial of Service)

Author: David Brumley
type: dos
platform: solaris
port: 
date_added: 1999-09-23 
date_updated: 2017-10-04 
verified: 1 
codes: CVE-1999-0908;OSVDB-1080 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/655/info

A vulnerability in Solaris TCP/IP stack may allow remote users to panic the system.

If the nmap network mapping utility is used with the OS fingerprinting option ('-O') against an active listening port and the server listening on that port is then killed the system will panic because of recursive calls to mutex_enter within the TCP streams driver.

$nmap -O -p 80 targethost.com