Oracle Solaris vulnerabilities
551 known vulnerabilities affecting oracle/solaris.
Total CVEs
551
CISA KEV
6
actively exploited
Public exploits
29
Exploited in wild
10
Severity breakdown
CRITICAL46HIGH116MEDIUM286LOW103
Vulnerabilities
Page 4 of 28
CVE-2015-4493P3CRITICALCVSS 9.3v11.32015-08-16
CVE-2015-4493 [CRITICAL] CVE-2015-4493: Heap-based buffer overflow in the stagefright::ESDS::parseESDescriptor function in libstagefright in
Heap-based buffer overflow in the stagefright::ESDS::parseESDescriptor function in libstagefright in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows remote attackers to execute arbitrary code via an invalid size field in an esds chunk in MPEG-4 video data, a related issue to CVE-2015-1539.
nvd
CVE-2018-3275P3HIGHCVSS 7.4v11.32018-10-17
CVE-2018-3275 [HIGH] CVE-2018-3275: Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: LibKMIP).
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: LibKMIP). The supported version that is affected is 11.3. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Solaris. Successful attacks of this vulnerability can result in unauthorized creation, del
nvd
CVE-2014-9659P3HIGHCVSS 7.5v10.0v11.22015-02-08
CVE-2014-9659 [HIGH] CVE-2014-9659: cff/cf2intrp.c in the CFF CharString interpreter in FreeType before 2.5.4 proceeds with additional h
cff/cf2intrp.c in the CFF CharString interpreter in FreeType before 2.5.4 proceeds with additional hints after the hint mask has been computed, which allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted OpenType font. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2
nvd
CVE-2015-3195P3MEDIUMCVSS 5.3v10v11.32015-12-06
CVE-2015-3195 [MEDIUM] CWE-200 CVE-2015-3195: The ASN1_TFLG_COMBINE implementation in crypto/asn1/tasn_dec.c in OpenSSL before 0.9.8zh, 1.0.0 befo
The ASN1_TFLG_COMBINE implementation in crypto/asn1/tasn_dec.c in OpenSSL before 0.9.8zh, 1.0.0 before 1.0.0t, 1.0.1 before 1.0.1q, and 1.0.2 before 1.0.2e mishandles errors caused by malformed X509_ATTRIBUTE data, which allows remote attackers to obtain sensitive information from process memory by triggering a decoding failure in a PKCS#7 or CMS appl
nvd
CVE-2014-6051P3HIGHCVSS 7.5v11.32014-09-30
CVE-2014-6051 [HIGH] CWE-189 CVE-2014-6051: Integer overflow in the MallocFrameBuffer function in vncviewer.c in LibVNCServer 0.9.9 and earlier
Integer overflow in the MallocFrameBuffer function in vncviewer.c in LibVNCServer 0.9.9 and earlier allows remote VNC servers to cause a denial of service (crash) and possibly execute arbitrary code via an advertisement for a large screen size, which triggers a heap-based buffer overflow.
nvd
CVE-2015-2731P3CRITICALCVSS 10.0v11.32015-07-06
CVE-2015-2731 [CRITICAL] CVE-2015-2731: Use-after-free vulnerability in the CSPService::ShouldLoad function in the microtask implementation
Use-after-free vulnerability in the CSPService::ShouldLoad function in the microtask implementation in Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 allows remote attackers to execute arbitrary code by leveraging client-side JavaScript that triggers removal of a DOM object on the basis of a Content Policy.
nvd
CVE-2018-3273P3HIGHCVSS 8.1v11.32018-10-17
CVE-2018-3273 [HIGH] CVE-2018-3273: Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Remote Ad
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Remote Administration Daemon (RAD)). The supported version that is affected is 11.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Solaris. Successful attacks require human interaction from a pers
nvd
CVE-2019-9579P3HIGHCVSS 8.1v112022-12-26
CVE-2019-9579 [HIGH] CWE-276 CVE-2019-9579: An issue was discovered in Illumos in Nexenta NexentaStor 4.0.5 and 5.1.2, and other products. The S
An issue was discovered in Illumos in Nexenta NexentaStor 4.0.5 and 5.1.2, and other products. The SMB server allows an attacker to have unintended access, e.g., an attacker with WRITE_XATTR can change permissions. This occurs because of a combination of three factors: ZFS extended attributes are used to implement NT named streams, the SMB protocol requ
nvd
CVE-2015-4024P3MEDIUMCVSS 5.0v11.22015-06-09
CVE-2015-4024 [MEDIUM] CWE-399 CVE-2015-4024: Algorithmic complexity vulnerability in the multipart_buffer_headers function in main/rfc1867.c in P
Algorithmic complexity vulnerability in the multipart_buffer_headers function in main/rfc1867.c in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 allows remote attackers to cause a denial of service (CPU consumption) via crafted form data that triggers an improper order-of-growth outcome.
nvd
CVE-2014-8145P3HIGHCVSS 7.5v11.22014-12-31
CVE-2014-8145 [HIGH] CWE-119 CVE-2014-8145: Multiple heap-based buffer overflows in Sound eXchange (SoX) 14.4.1 and earlier allow remote attacke
Multiple heap-based buffer overflows in Sound eXchange (SoX) 14.4.1 and earlier allow remote attackers to have unspecified impact via a crafted WAV file to the (1) start_read or (2) AdpcmReadBlock function.
nvd
CVE-2016-4954P3HIGHCVSS 7.5v10v11.32016-07-05
CVE-2016-4954 [HIGH] CWE-362 CVE-2016-4954: The process_packet function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p8 allows remote attackers
The process_packet function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (peer-variable modification) by sending spoofed packets from many source IP addresses in a certain scenario, as demonstrated by triggering an incorrect leap indication.
nvd
CVE-2015-8000P3MEDIUMCVSS 5.0v10v11.32015-12-16
CVE-2015-8000 [MEDIUM] CWE-20 CVE-2015-8000: db.c in named in ISC BIND 9.x before 9.9.8-P2 and 9.10.x before 9.10.3-P2 allows remote attackers to
db.c in named in ISC BIND 9.x before 9.9.8-P2 and 9.10.x before 9.10.3-P2 allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via a malformed class attribute.
nvd
CVE-2014-1528P3CRITICALCVSS 10.0v11.32014-04-30
CVE-2014-1528 [CRITICAL] CWE-119 CVE-2014-1528: The sse2_composite_src_x888_8888 function in Pixman, as used in Cairo in Mozilla Firefox 28.0 and Se
The sse2_composite_src_x888_8888 function in Pixman, as used in Cairo in Mozilla Firefox 28.0 and SeaMonkey 2.25 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds write and application crash) by painting on a CANVAS element.
nvd
CVE-2019-16056P3HIGHCVSS 7.5v112019-09-06
CVE-2019-16056 [HIGH] CVE-2019-16056: An issue was discovered in Python through 2.7.16, 3.x through 3.5.7, 3.6.x through 3.6.9, and 3.7.x
An issue was discovered in Python through 2.7.16, 3.x through 3.5.7, 3.6.x through 3.6.9, and 3.7.x through 3.7.4. The email module wrongly parses email addresses that contain multiple @ characters. An application that uses the email module and implements some kind of checks on the From/To headers of a message could be tricked into accepting an email address t
nvd
CVE-2014-9512P3MEDIUMCVSS 6.4v10.0v11.32015-02-12
CVE-2014-9512 [MEDIUM] CWE-59 CVE-2014-9512: rsync 3.1.1 allows remote attackers to write to arbitrary files via a symlink attack on a file in th
rsync 3.1.1 allows remote attackers to write to arbitrary files via a symlink attack on a file in the synchronization path.
nvd
CVE-2018-2928P3HIGHCVSS 8.1v11.32018-07-18
CVE-2018-2928 [HIGH] CVE-2018-2928: Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: RAD). The
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: RAD). The supported version that is affected is 11.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Solaris. Successful attacks require human interaction from a person other than the attacker. Suc
nvd
CVE-2010-3509P3CRITICALCVSS 10.0v8v9+1 more2010-10-14
CVE-2010-3509 [CRITICAL] CVE-2010-3509: Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows remote attackers to affect confident
Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Scheduler.
nvd
CVE-2015-7546P3HIGHCVSS 7.5v11.32016-02-03
CVE-2015-7546 [HIGH] CWE-522 CVE-2015-7546: The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2
The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty before 2.3.3 does not properly invalidate authorization tokens when using the PKI or PKIZ token providers, which allows remote authenticated users to bypass i
nvd
CVE-2019-2838P3HIGHCVSS 7.5v11.42019-07-23
CVE-2019-2838 [HIGH] CVE-2019-2838: Vulnerability in the Oracle Solaris component of Oracle Sun Systems Products Suite (subcomponent: Ke
Vulnerability in the Oracle Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). The supported version that is affected is 11.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via NFS to compromise Oracle Solaris. Successful attacks of this vulnerability can result in unauthorized creation, deletio
nvd
CVE-2014-1478P3CRITICALCVSS 10.0v11.32014-02-06
CVE-2014-1478 [CRITICAL] CWE-787 CVE-2014-1478: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0 and SeaMon
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the MPostWriteBarrier class in js/src/jit/MIR.h and stack alignment in js/src/jit/A
nvd