CVE-2008-3869: Buffer Overflow
Published May 26, 2009
·Updated
Heap-based buffer overflow in sadmind in Sun Solaris 8 and 9 allows remote attackers to execute arbitrary code via a crafted RPC request, related to improper decoding of request parameters.
Affected Software
4 affected components
Sun Solaris=8.0
Sun Solaris=9.0
Sun Solaris=9.0
Sun Solaris=8.0
Remediation
Event History
May 26, 2009
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3869?
CVE-2008-3869 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2008-3869?
To mitigate CVE-2008-3869, update your Sun Solaris system to the latest version or apply available patches.
3
What systems are affected by CVE-2008-3869?
CVE-2008-3869 affects Sun Solaris version 8 and 9 running on SPARC and x86 architectures.
4
What type of attack does CVE-2008-3869 enable?
CVE-2008-3869 enables remote attackers to execute arbitrary code via a crafted RPC request.
5
What component of the system is vulnerable in CVE-2008-3869?
The vulnerability exists in the sadmind service of Sun Solaris, which improperly decodes request parameters.