CVE-2008-0965

Multiple format string vulnerabilities in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via format string specifiers in an SMB packet.
Configurations

Configuration 1

cpe:2.3:o:sun:solaris:8:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:solaris:9:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:*:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_89:*:*:*:*:*:*:*
cpe:2.3:o:sun:solaris:9:*:x86:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_19:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_01:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_92:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_88:*:*:*:*:*:*:*
cpe:2.3:o:sun:solaris:8:*:x86:*:*:*:*:*
cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:*
cpe:2.3:o:sun:solaris:10:*:x86:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_22:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:*:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:5.10:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:5.9:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_91:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:*:*:x86:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_02:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_64:*:*:*:*:*:*:*
cpe:2.3:o:sun:solaris:10:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:*:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_13:*:*:*:*:*:*:*

Information

Published : 2008-08-08 06:41

Updated : 2018-10-30 04:25


NVD link : CVE-2008-0965

Mitre link : CVE-2008-0965

Products Affected
No products.
CWE
CWE-134

Use of Externally-Controlled Format String