The RPC subsystem in Sun Solaris 9 allows remote attackers to cause a denial of service (daemon crash) via a crafted request to procedure 8 in program 100000 (rpcbind), related to the XDR_DECODE operation and the taddr2uaddr function. NOTE: this might be a duplicate of CVE-2007-0165.
https://www.redhat.com/archives/fedora-package-announce/2008-October/msg00819.html
https://www.exploit-db.com/exploits/6775
https://exchange.xforce.ibmcloud.com/vulnerabilities/46057
http://www.vupen.com/english/advisories/2008/2945
http://www.openwall.com/lists/oss-security/2008/10/31/2
http://www.openwall.com/lists/oss-security/2008/10/29/1
http://www.openwall.com/lists/oss-security/2008/10/28/2
http://sunsolve.sun.com/search/document.do?assetkey=1-66-200412-1