CVE-1999-0568: Critical severity Sun Solaris vulnerability
rpc.admind in Solaris is not running in a secure mode.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
rpc.admind (Oracle Solaris)from your environment.If rpc.admind is not required, disable or uninstall the rpc.admind service on affected Solaris systems to eliminate the insecure service.
- Configuration
Configure rpc.admind to run in secure mode on Oracle Solaris (enable secure mode or start with appropriate security options) so administrative RPC operations are protected.
rpc.admind (Oracle Solaris) secure_mode = enabled - Compensating control
Restrict access to rpc.admind using network controls (firewall, network ACLs) or host-based controls to trusted management hosts/networks until the service is secured or removed.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0568?
CVE-1999-0568 is categorized with a moderate severity due to its potential for unauthorized access.
How do I fix CVE-1999-0568?
To fix CVE-1999-0568, ensure that rpc.admind is configured to run in a secure mode and apply the latest patches provided by Oracle for Solaris.
What are the risks associated with CVE-1999-0568?
The risks associated with CVE-1999-0568 include possible unauthorized access to system resources and sensitive information.
Does CVE-1999-0568 affect all versions of Solaris?
CVE-1999-0568 specifically affects certain versions of Solaris that have rpc.admind running in an insecure mode.
How can I determine if my Solaris system is vulnerable to CVE-1999-0568?
You can determine if your Solaris system is vulnerable to CVE-1999-0568 by checking the configuration settings of rpc.admind and reviewing the system's patch level.