Oval Definition:
oval:org.mitre.oval:def:592
Revision Date
:
2005-06-01
Version
:
16
Title
:
rwho daemon Code Execution Vulnerability
Description
:
Unknown vulnerability in the rwho daemon (in.rwhod) for Solaris 7 through 9 allows remote attackers to execute arbitrary code.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2004-1351
Platform(s)
:
Sun Solaris 7
Sun Solaris 8
Sun Solaris 9
Product(s)
:
Licence Logging Service
Definition Synopsis
Software section
Solaris 7 or 8 OR Solaris 9 and Remote Network Server Commands (SUNWrcmds) installed
Solaris 7 or 8 installed
Solaris 7 Installed
OR
Solaris 8 Installed
OR
Solaris 9 and Remote Network Server Commands (SUNWrcmds) installed
Solaris 9 Installed
AND
Remote Network Server Commands - Usr (SUNWrcmds) installed
AND
NOT
Patch 118239-01 or later installed
AND
NOT
Patch 116984-01 or later installed
AND
NOT
Patch 117455-01 or later installed
AND
Configuration section
in.rwhod is running
BACK