Solaris 8 Buffer Overflow

HIGH (7.2) No Patch (9319 days)

Threat Intelligence

⚠️ CRITICAL GAP - Exploits exist but no detection available
EPSS Score: 0.34% chance of exploitation (percentile: 56%)
🔍 Detection Tools: None available in major open-source tools
⚔️ Exploit Availability: Exploit-DB

How we test →

What is it?

Solaris 8 is an older version of the Solaris operating system. This vulnerability allows local users to gain root privileges by exploiting a buffer overflow in the ufsrestore function. The real-world risk lies in the potential for unauthorized access to sensitive data and system configuration.

Am I affected?

You're affected if you use Solaris 8 versions 1.4 or earlier.
Check with: find / -name "ufsrestore" 2>/dev/null

Note: This is an older operating system, so it's unlikely that many systems are still running this version.

Affected Products

Sun Microsystems / Solaris 8

How to fix

Upgrade to a supported version of Solaris (version 9 or later).
- Immediate mitigations:
- Restrict network access to your Solaris instance (firewall it from the public internet)
- Audit system logs for suspicious activity