Sun Solaris Platform Information and Control Library picld(1M) Local Denial of Service Vulnerability
BID:30450
Info
Sun Solaris Platform Information and Control Library picld(1M) Local Denial of Service Vulnerability
| Bugtraq ID: | 30450 |
| Class: | Unknown |
| CVE: |
CVE-2008-3426 |
| Remote: | No |
| Local: | Yes |
| Published: | Jul 30 2008 12:00AM |
| Updated: | May 07 2015 05:25PM |
| Credit: | Sun Microsystems |
| Vulnerable: |
Sun Solaris 9_x86 Sun Solaris 9_sparc Sun Solaris 8_x86 Sun Solaris 8_sparc Sun Solaris 10_x86 Sun Solaris 10_sparc Sun OpenSolaris build snv_95 Sun OpenSolaris build snv_92 Sun OpenSolaris build snv_91 Sun OpenSolaris build snv_89 Sun OpenSolaris build snv_88 Sun OpenSolaris build snv_64 Sun OpenSolaris build snv_22 Sun OpenSolaris build snv_19 Sun OpenSolaris build snv_13 Sun OpenSolaris build snv_02 Sun OpenSolaris build snv_01 Avaya Interactive Response 3.0 Avaya Interactive Response 2.0 Avaya CMS Server 13.0 Avaya CMS Server 14.1 Avaya CMS Server 14.0 Avaya CMS Server 13.1 |
| Not Vulnerable: | |
Discussion
Sun Solaris Platform Information and Control Library picld(1M) Local Denial of Service Vulnerability
The Sun Solaris Platform Information and Control Library daemon 'picld(1M)' is prone to a local denial-of-service vulnerability.
A local unprivileged attacker can exploit this issue to disable system monitoring and prevent proper operations of certain system utilities, resulting in a denial-of-service condition.
This issue affects Solaris 8, 9, 10 and OpenSolaris for SPARC and x86 platforms.
The Sun Solaris Platform Information and Control Library daemon 'picld(1M)' is prone to a local denial-of-service vulnerability.
A local unprivileged attacker can exploit this issue to disable system monitoring and prevent proper operations of certain system utilities, resulting in a denial-of-service condition.
This issue affects Solaris 8, 9, 10 and OpenSolaris for SPARC and x86 platforms.
Exploit / POC
Sun Solaris Platform Information and Control Library picld(1M) Local Denial of Service Vulnerability
Currently we are not aware of any working exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Sun Solaris Platform Information and Control Library picld(1M) Local Denial of Service Vulnerability
Solution:
Sun has released patches and an advisory. Please see the references for more information.
Solution:
Sun has released patches and an advisory. Please see the references for more information.
References
Sun Solaris Platform Information and Control Library picld(1M) Local Denial of Service Vulnerability
References:
References:
- Solaris Homepage (Sun Microsystems)
- ASA-2008-351 - A Security Vulnerability in picld(1M) May Allow a Denial of Servi (Avaya)
- Solution 239728: A Security Vulnerability in picld(1M) May Allow a Denial of Ser (Sun Microsystems)