Sun Solaris xdm(1) daemon is reported prone to an unspecified denial of service vulnerability handling malformed XDMCP UDP packets. UDP packets to port 177 of affected computers running a vulnerable instance of xdm(1) are reportedly capable of crashing xdm(1). The cause of this crash is unspecified. IP based access controls for xdm(1) are reportedly unable to block attackers from exploiting this vulnerability. This BID will be updated as further information is disclosed. Solaris 7, 8, and 9 for both SPARC, and x86 platforms are reported vulnerable.
Sun Solaris xdm(1) daemon is reported prone to an unspecified denial of service vulnerability handling malformed XDMCP UDP packets. UDP packets to port 177 of affected computers running a vulnerable instance of xdm(1) are reportedly capable of crashing xdm(1). The cause of this crash is unspecified. IP based access controls for xdm(1) are reportedly unable to block attackers from exploiting this vulnerability. This BID will be updated as further information is disclosed. Solaris 7, 8, and 9 for both SPARC, and x86 platforms are reported vulnerable.