CVE-2008-3869Improper Restriction of Operations within the Bounds of a Memory Buffer in Solaris

Severity
10.0CRITICALNVD
EPSS
33.3%
top 3.08%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 26
Latest updateMay 2

Description

Heap-based buffer overflow in sadmind in Sun Solaris 8 and 9 allows remote attackers to execute arbitrary code via a crafted RPC request, related to improper decoding of request parameters.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

NVDsun/solaris8.0, 9.0+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9vvj-7q58-pch2: Heap-based buffer overflow in sadmind in Sun Solaris 8 and 9 allows remote attackers to execute arbitrary code via a crafted RPC request, related to i2022-05-02
CVEList
CVE-2008-3869: Heap-based buffer overflow in sadmind in Sun Solaris 8 and 9 allows remote attackers to execute arbitrary code via a crafted RPC request, related to i2009-05-26
CVE-2008-3869 — SUN Solaris vulnerability | cvebase