CVE-2014-9491: Illumos

Medium severity, CVSS 5.0. EPSS: 2.7% chance of exploitation in the next 30 days.

The devzvol_readdir function in illumos does not check the return value of a strchr call, which allows remote attackers to cause a denial of service (NULL pointer dereference and panic) via unspecified vectors.

Affected products

Published 2015-01-20. Last modified 2026-06-17.