CVE-2005-2132: Low severity SCO UnixWare vulnerability
Published Aug 3, 2005
·Updated
RPC portmapper (rpcbind) in SCO UnixWare 7.1.1 m5, 7.1.3 mp5, and 7.1.4 mp2 allows remote attackers or local users to cause a denial of service (lack of response) via multiple invalid portmap requests.
Affected Software
3 affected components
SCO UnixWare=7.1.1_m5
SCO UnixWare=7.1.3_mp5
SCO UnixWare=7.1.4_mp2
Remediation
Event History
Aug 3, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2132?
CVE-2005-2132 is considered a high severity vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2005-2132?
To mitigate CVE-2005-2132, it is recommended to implement firewall rules to restrict access to the RPC portmapper service.
3
Who is affected by CVE-2005-2132?
CVE-2005-2132 affects users of SCO UnixWare versions 7.1.1 m5, 7.1.3 mp5, and 7.1.4 mp2.
4
What type of attack does CVE-2005-2132 enable?
CVE-2005-2132 enables remote attackers to initiate a denial of service attack through multiple invalid portmap requests.
5
Is there a workaround for CVE-2005-2132?
A possible workaround for CVE-2005-2132 is to disable the RPC portmapper service if it is not needed.