It is reported that 'ypbind' is susceptible to an unspecified remote buffer overflow vulnerability. This vulnerability exists due to insufficient boundary checks performed on user-supplied data. 'ypbind' runs with superuser privileges, therefor, remote code execution as the superuser is possible. It is also likely that a system-wide denial of service condition could be created by crashing the 'ypbind' process. Due to a lack of details, further information is not available at the moment. This BID will be updated as more information becomes available. Versions of Solaris prior to Solaris 8 01/01, or Solaris 8 Maintenance Update 3 are reported vulnerable.
It is reported that 'ypbind' is susceptible to an unspecified remote buffer overflow vulnerability. This vulnerability exists due to insufficient boundary checks performed on user-supplied data. 'ypbind' runs with superuser privileges, therefor, remote code execution as the superuser is possible. It is also likely that a system-wide denial of service condition could be created by crashing the 'ypbind' process. Due to a lack of details, further information is not available at the moment. This BID will be updated as more information becomes available. Versions of Solaris prior to Solaris 8 01/01, or Solaris 8 Maintenance Update 3 are reported vulnerable.