PT-2009-1216 · Sun · Sun Solaris
Published
2009-05-26
·
Updated
2018-10-11
·
CVE-2008-3869
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Sun Solaris versions 8 and 9
Description
The issue is related to a heap-based buffer overflow in the sadmind service, which allows remote attackers to execute arbitrary code via a crafted RPC request. This is due to improper decoding of request parameters.
Recommendations
For Sun Solaris versions 8 and 9, apply the necessary patches or configuration changes to fix the improper decoding of request parameters in the sadmind service.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sun Solaris