CVE-2008-5010: Critical severity oracle solaris and zettabyte file system (zfs) vulnerability
in.dhcpd in the DHCP implementation in Sun Solaris 8 through 10, and OpenSolaris before snv103, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via unknown DHCP requests related to the "number of offers," aka Bug ID 6713805.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5010?
CVE-2008-5010 is classified as a denial of service vulnerability, allowing remote attackers to crash the DHCP daemon.
How do I fix CVE-2008-5010?
To mitigate CVE-2008-5010, upgrade your system to a patched version of Solaris or OpenSolaris that addresses this vulnerability.
What versions of Solaris are affected by CVE-2008-5010?
CVE-2008-5010 affects Solaris 8 through 10 and OpenSolaris versions prior to snv_103.
Can CVE-2008-5010 be exploited remotely?
Yes, CVE-2008-5010 can be exploited remotely through malicious DHCP requests.
What are the potential impacts of CVE-2008-5010?
The impact of CVE-2008-5010 is service disruption, causing the DHCP server to crash, leading to a denial of service for clients.