PT-2007-4502 · Sun · Sun Solaris 10

Published

2007-06-14

·

Updated

2018-10-30

·

CVE-2007-3223

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Sun Solaris 10 versions prior to 20070613
Description: The issue allows remote attackers to cause a denial of service, resulting in a system crash, by sending certain XDR data in NFS requests. This is likely related to the processing of data by the xdr bool and xdrmblk getint32 functions.
Recommendations: For Sun Solaris 10 versions prior to 20070613, update to a version released after 20070613 to resolve the issue. As a temporary workaround, consider restricting access to the NFS server to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-3223

Affected Products

Sun Solaris 10