Oval Definition:oval:org.mitre.oval:def:41
Revision Date:2010-09-20Version:18
Title:Solaris 7 RWall Daemon Syslog Format String Vulnerability
Description:Format string vulnerability in RPC wall daemon (rpc.rwalld) for Solaris 2.5.1 through 8 allows remote attackers to execute arbitrary code via format strings in a message that is not properly provided to the syslog function when the wall command cannot be executed.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2002-0573
Platform(s):Sun Solaris 7
Product(s):rpc.rwalld
Definition Synopsis
  • Software section
  • Solaris 7 Installed
  • AND File rpc.rwalld exists
  • AND NOT Patch 112899-01 or later installed
  • AND Configuration section
  • inetd.conf contains rpc.rwalld
  • AND inetd running
  • AND File rpc.rwalld executable
  • File rpc.rwalld executable
  • OR File rpc.rwalld executable
  • OR File rpc.rwalld executable
  • BACK