Sun Solaris UDP RPC Packet Denial of Service Vulnerability
BID:6883
Info
Sun Solaris UDP RPC Packet Denial of Service Vulnerability
| Bugtraq ID: | 6883 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 18 2003 12:00AM |
| Updated: | Feb 18 2003 12:00AM |
| Credit: | This vulnerability was announced by Sun Microsystems. |
| Vulnerable: |
Sun Solaris 2.5.1 _x86 Sun Solaris 2.5.1 Sun Solaris 9 Sun Solaris 8_x86 Sun Solaris 8_sparc Sun Solaris 7.0_x86 Sun Solaris 7.0 Sun Solaris 2.6_x86 Sun Solaris 2.6 |
| Not Vulnerable: |
Sun Solaris 9_x86 |
Discussion
Sun Solaris UDP RPC Packet Denial of Service Vulnerability
Sun has reported the existance of a denial of service vulnerability in versions of the Solaris operating systems. The condition may be triggered when processing malicious packets sent to a listening RPC service. The problem occurs due to large amounts of memory being allocated when malicious packets are received.
A remote attacker could exploit this vulnerability to crash a targetted Solaris system.
The precise technical details regarding the vulnerability are currently unknown. This BID will be updated if more information is made available.
Sun has reported the existance of a denial of service vulnerability in versions of the Solaris operating systems. The condition may be triggered when processing malicious packets sent to a listening RPC service. The problem occurs due to large amounts of memory being allocated when malicious packets are received.
A remote attacker could exploit this vulnerability to crash a targetted Solaris system.
The precise technical details regarding the vulnerability are currently unknown. This BID will be updated if more information is made available.