CVE-2008-0965

Multiple format string vulnerabilities in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via format string specifiers in an SMB packet.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:sun:opensolaris:*:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:*:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:*:*:x86:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:*:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_01:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_02:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_13:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_19:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_22:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_64:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_88:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_89:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_91:*:*:*:*:*:*:*
cpe:2.3:o:sun:opensolaris:build_snv_92:*:*:*:*:*:*:*
cpe:2.3:o:sun:solaris:8:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:solaris:8:*:x86:*:*:*:*:*
cpe:2.3:o:sun:solaris:9:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:solaris:9:*:x86:*:*:*:*:*
cpe:2.3:o:sun:solaris:10:*:sparc:*:*:*:*:*
cpe:2.3:o:sun:solaris:10:*:x86:*:*:*:*:*
cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:5.9:*:*:*:*:*:*:*
cpe:2.3:o:sun:sunos:5.10:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-08-08 18:41

Updated : 2023-12-10 10:51


NVD link : CVE-2008-0965

Mitre link : CVE-2008-0965

CVE.ORG link : CVE-2008-0965


JSON object : View

Products Affected

sun

  • solaris
  • sunos
  • opensolaris
CWE
CWE-134

Use of Externally-Controlled Format String