PT-2004-2264 · Oracle · X Display Manager+1
Published
2004-08-10
·
Updated
2018-10-30
·
CVE-2004-1347
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
X Display Manager (XDM) on Solaris 8
Description:
The issue allows remote attackers to cause a denial of service, resulting in the X Display Manager (XDM) crashing. This is achieved by sending an invalid X Display Manager Control Protocol (XDMCP) request.
Recommendations:
For X Display Manager (XDM) on Solaris 8, consider implementing validation checks on XDMCP requests to prevent the denial of service. As a temporary workaround, restrict access to XDMCP to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Solaris
X Display Manager