PT-2007-4502 · Sun · Sun Solaris 10
Published
2007-06-14
·
Updated
2018-10-30
·
CVE-2007-3223
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions:
Sun Solaris 10 versions prior to 20070613
Description:
The issue allows remote attackers to cause a denial of service, resulting in a system crash, by sending certain XDR data in NFS requests. This is likely related to the processing of data by the
xdr bool and xdrmblk getint32 functions.Recommendations:
For Sun Solaris 10 versions prior to 20070613, update to a version released after 20070613 to resolve the issue. As a temporary workaround, consider restricting access to the NFS server to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sun Solaris 10