Oracle Solaris vulnerabilities
552 known vulnerabilities affecting oracle/solaris.
Total CVEs
552
CISA KEV
6
actively exploited
Public exploits
29
Exploited in wild
10
Severity breakdown
CRITICAL46HIGH117MEDIUM286LOW103
Vulnerabilities
Page 26 of 28
CVE-2010-3540P4MEDIUMCVSS 4.0v102010-10-14
CVE-2010-3540 [MEDIUM] CVE-2010-3540: Unspecified vulnerability in Oracle Solaris 10 and OpenSolaris allows local users to affect availabi
Unspecified vulnerability in Oracle Solaris 10 and OpenSolaris allows local users to affect availability, related to ZFS.
nvd
CVE-2015-2651P4LOWCVSS 3.8v11.22015-07-16
CVE-2015-2651 [LOW] CVE-2015-2651: Unspecified vulnerability in Oracle Sun Solaris 11.2 allows local users to affect availability via v
Unspecified vulnerability in Oracle Sun Solaris 11.2 allows local users to affect availability via vectors related to Kernel Zones virtualized NIC driver.
nvd
CVE-2016-0426P4LOWCVSS 3.6v112016-01-21
CVE-2016-0426 [LOW] CVE-2016-0426: Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect confidentiality and
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect confidentiality and availability via unknown vectors related to Solaris Kernel Zones.
nvd
CVE-2010-3576P4LOWCVSS 3.6v8v9+1 more2010-10-14
CVE-2010-3576 [LOW] CVE-2010-3576: Unspecified vulnerability in Oracle Solaris 8, 9, and 10, and OpenSolaris, allows local users to aff
Unspecified vulnerability in Oracle Solaris 8, 9, and 10, and OpenSolaris, allows local users to affect integrity and availability, related to the SCSI enclosure services device driver.
nvd
CVE-2020-14542P4LOWCVSS 3.3v112020-07-15
CVE-2020-14542 [LOW] CVE-2020-14542: Vulnerability in the Oracle Solaris product of Oracle Systems (component: libsuri). The supported ve
Vulnerability in the Oracle Solaris product of Oracle Systems (component: libsuri). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized read ac
nvd
CVE-2017-3474P4LOWCVSS 3.3v11.32017-04-24
CVE-2017-3474 [LOW] CVE-2017-3474: Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Zone). Th
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Zone). The supported version that is affected is 11.3. Easily "exploitable" vulnerability allows low privileged attacker with logon to the infrastructure where Solaris executes to compromise Solaris. Successful attacks of this vulnerability can result in unauthorized read
nvd
CVE-2017-3498P4LOWCVSS 3.3v11.32017-04-24
CVE-2017-3498 [LOW] CWE-200 CVE-2017-3498: Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel).
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). The supported version that is affected is 11.3. Easily "exploitable" vulnerability allows low privileged attacker with logon to the infrastructure where Solaris executes to compromise Solaris. Successful attacks of this vulnerability can result in unauthori
nvd
CVE-2024-21151P4LOWCVSS 3.3v112024-07-16
CVE-2024-21151 [LOW] CVE-2024-21151: Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The support
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized abilit
nvd
CVE-2011-2286P4LOWCVSS 2.1v10v11_express2011-10-18
CVE-2011-2286 [LOW] CVE-2011-2286: Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows remote authenticated users to a
Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows remote authenticated users to affect availability, related to ZFS.
nvd
CVE-2014-3532P4LOWCVSS 2.1v11.32014-07-19
CVE-2014-3532 [LOW] CWE-20 CVE-2014-3532: dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6, when running on Linux 2.6.37-rc4 or later, allows l
dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6, when running on Linux 2.6.37-rc4 or later, allows local users to cause a denial of service (system-bus disconnect of other services or applications) by sending a message containing a file descriptor, then exceeding the maximum recursion depth before the initial message is forwarded.
nvd
CVE-2010-3516P4MEDIUMCVSS 4.0v102010-10-14
CVE-2010-3516 [MEDIUM] CVE-2010-3516: Unspecified vulnerability in Oracle Solaris 10 and OpenSolaris allows local users to affect availabi
Unspecified vulnerability in Oracle Solaris 10 and OpenSolaris allows local users to affect availability via unknown vectors related to InfiniBand.
nvd
CVE-2019-2577P4LOWCVSS 3.3v112019-04-23
CVE-2019-2577 [LOW] CVE-2019-2577: Vulnerability in the Oracle Solaris component of Oracle Sun Systems Products Suite (subcomponent: Fi
Vulnerability in the Oracle Solaris component of Oracle Sun Systems Products Suite (subcomponent: File Locking Services). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerabilit
nvd
CVE-2016-0493P4LOWCVSS 3.3v112016-01-21
CVE-2016-0493 [LOW] CVE-2016-0493: Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity and availa
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity and availability via unknown vectors related to Kernel Cryptography.
nvd
CVE-2020-2771P4LOWCVSS 2.5v10v112020-04-15
CVE-2020-2771 [LOW] CVE-2020-2771: Vulnerability in the Oracle Solaris product of Oracle Systems (component: Whodo). Supported versions
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Whodo). Supported versions that are affected are 10 and 11. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than t
nvd
CVE-2014-9496P4LOWCVSS 2.1v11.22015-01-16
CVE-2014-9496 [LOW] CVE-2014-9496: The sd2_parse_rsrc_fork function in sd2.c in libsndfile allows attackers to have unspecified impact
The sd2_parse_rsrc_fork function in sd2.c in libsndfile allows attackers to have unspecified impact via vectors related to a (1) map offset or (2) rsrc marker, which triggers an out-of-bounds read.
nvd
CVE-2016-0406P4LOWCVSS 3.3v112016-01-21
CVE-2016-0406 [LOW] CVE-2016-0406: Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity and availa
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity and availability via vectors related to Libc.
nvd
CVE-2016-5615P4LOWCVSS 3.3v11.32016-10-25
CVE-2016-5615 [LOW] CWE-284 CVE-2016-5615: Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via v
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Lynx.
nvd
CVE-2016-3419P4LOWCVSS 3.3v10v11.32016-04-21
CVE-2016-3419 [LOW] CVE-2016-3419: Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect availabilit
Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect availability via vectors related to Filesystem.
nvd
CVE-2022-21610P4LOWCVSS 3.3v112022-10-18
CVE-2022-21610 [LOW] CVE-2022-21610: Vulnerability in the Oracle Solaris product of Oracle Systems (component: LDoms). The supported vers
Vulnerability in the Oracle Solaris product of Oracle Systems (component: LDoms). The supported version that is affected is 11. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the a
nvd
CVE-2010-2376P4LOWCVSS 3.2v8v9+1 more2010-07-13
CVE-2010-2376 [LOW] CVE-2010-2376: Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows local users to affect confidentialit
Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows local users to affect confidentiality and integrity via unknown vectors related to Solaris Management Console.
nvd