Oval Definition:
oval:org.mitre.oval:def:2816
Revision Date
:
2010-09-20
Version
:
19
Title
:
XFS Dispatch() Buffer Overflow
Description
:
Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2002-1317
Platform(s)
:
Sun Solaris 9
Product(s)
:
fs.auto
fs.auto, xfs
xfs
Definition Synopsis
Software section
Solaris 9 Installed
AND
X Window System Font Server (SUNWxwfs) installed
AND
NOT
Patch 113923-02 or later installed
AND
Configuration section
inetd.conf contains fs.auto
AND
inetd running
BACK