First published: Mon Oct 20 2008(Updated: )
The RPC subsystem in Sun Solaris 9 allows remote attackers to cause a denial of service (daemon crash) via a crafted request to procedure 8 in program 100000 (rpcbind), related to the XDR_DECODE operation and the taddr2uaddr function. NOTE: this might be a duplicate of CVE-2007-0165.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun SunOS | =5.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4619 is classified as a high severity vulnerability due to its potential to cause denial of service by crashing the rpcbind daemon.
To fix CVE-2008-4619, it is recommended to upgrade to the latest patched version of Sun Solaris that addresses this vulnerability.
CVE-2008-4619 specifically affects Sun Solaris 9 (SunOS 5.9) systems utilizing the RPC subsystem.
Exploiting CVE-2008-4619 can lead to a denial of service, causing the rpcbind service to crash and disrupt network services.
Yes, CVE-2008-4619 can be exploited remotely, allowing attackers to send crafted requests that trigger the vulnerability.