Sun Solaris vulnerabilities
429 known vulnerabilities affecting sun/solaris.
Total CVEs
429
CISA KEV
0
Public exploits
102
Exploited in wild
6
Severity breakdown
CRITICAL49HIGH153MEDIUM172LOW55
Vulnerabilities
Page 10 of 22
CVE-2004-1767P4HIGHCVSS 7.2v2.6v7.0+2 more2004-12-31
CVE-2004-1767 [HIGH] CWE-264 CVE-2004-1767: The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary lo
The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel modules (LKM), possibly involving the modload function.
nvd
CVE-2005-0816P4HIGHCVSS 7.2v7.0v8.0+1 more2005-05-02
CVE-2005-0816 [HIGH] CVE-2005-0816: Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges.
Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges.
nvd
CVE-2003-0091P4HIGHCVSS 7.2v2.62003-04-02
CVE-2003-0091 [HIGH] CVE-2003-0091: Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local us
Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local users to gain root privilege.
nvd
CVE-2003-1078P4HIGHCVSS 7.5v2.6v7.0+1 more2003-02-28
CVE-2003-1078 [HIGH] CVE-2003-1078: The FTP client for Solaris 2.6, 7, and 8 with the debug (-d) flag enabled displays the user password
The FTP client for Solaris 2.6, 7, and 8 with the debug (-d) flag enabled displays the user password on the screen during login.
nvd
CVE-1999-0190P4HIGHCVSS 7.2v2.4v2.5+2 more1998-04-08
CVE-1999-0190 [HIGH] CVE-1999-0190: Solaris rpcbind can be exploited to overwrite arbitrary files and gain root access.
Solaris rpcbind can be exploited to overwrite arbitrary files and gain root access.
nvd
CVE-2008-3838P4HIGHCVSS 7.2v102008-08-27
CVE-2008-3838 [HIGH] CWE-20 CVE-2008-3838: Unspecified vulnerability in the NFS Remote Procedure Calls (RPC) zones implementation in Sun Solari
Unspecified vulnerability in the NFS Remote Procedure Calls (RPC) zones implementation in Sun Solaris 10 and OpenSolaris before snv_88 allows local administrators of non-global zones to read and modify NFS traffic for arbitrary non-global zones, possibly leading to file modifications or a denial of service.
nvd
CVE-1999-0837P4CRITICALCVSS 10.0v7.01999-11-10
CVE-1999-0837 [CRITICAL] CVE-1999-0837: Denial of service in BIND by improperly closing TCP sessions via so_linger.
Denial of service in BIND by improperly closing TCP sessions via so_linger.
nvd
CVE-2006-7140P4MEDIUMCVSS 5.8v10.02007-03-07
CVE-2006-7140 [MEDIUM] CVE-2006-7140: The libike library, as used by in.iked, elfsign, and kcfd in Sun Solaris 9 and 10, when using an RSA
The libike library, as used by in.iked, elfsign, and kcfd in Sun Solaris 9 and 10, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents libike from correctly verifying X.509 and other certificates that use PKCS #1, a s
nvd
CVE-1999-0213P4CRITICALCVSS 10.0v2.61998-07-15
CVE-1999-0213 [CRITICAL] CVE-1999-0213: libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind.
libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind.
nvd
CVE-1999-0022P4HIGHCVSS 7.8v4.1.31996-07-03
CVE-1999-0022 [HIGH] CWE-125 CVE-1999-0022: Local user gains root privileges via buffer overflow in rdist, via expstr() function.
Local user gains root privileges via buffer overflow in rdist, via expstr() function.
nvd
CVE-2007-6180P4HIGHCVSS 7.6v8.0v9.0+1 more2007-11-30
CVE-2007-6180 [HIGH] CWE-362 CVE-2007-6180: Race condition in the Remote Procedure Call kernel module (rpcmod) in Sun Solaris 8 through 10 allow
Race condition in the Remote Procedure Call kernel module (rpcmod) in Sun Solaris 8 through 10 allows local users to cause a denial of service (NULL dereference and panic) via unspecified vectors.
nvd
CVE-2008-3666P4HIGHCVSS 7.1v102008-08-13
CVE-2008-3666 [HIGH] CVE-2008-3666: Unspecified vulnerability in Sun Solaris 10 and OpenSolaris before snv_96 allows (1) context-depende
Unspecified vulnerability in Sun Solaris 10 and OpenSolaris before snv_96 allows (1) context-dependent attackers to cause a denial of service (panic) via vectors involving creation of a crafted file and use of the sendfilev system call, as demonstrated by a file served by an Apache 2.2.x web server with EnableSendFile configured; and (2) local users to cause a
nvd
CVE-2009-2297P4HIGHCVSS 7.1v10.02009-07-02
CVE-2009-2297 [HIGH] CVE-2009-2297: Unspecified vulnerability in the udp subsystem in the kernel in Sun Solaris 10, and OpenSolaris snv_
Unspecified vulnerability in the udp subsystem in the kernel in Sun Solaris 10, and OpenSolaris snv_90 through snv_108, when Solaris Trusted Extensions is enabled, allows remote attackers to cause a denial of service (panic) via unspecified vectors involving the crgetlabel function, related to a "TX panic." NOTE: this issue exists because of a regression in ear
nvd
CVE-2008-1779P4MEDIUMCVSS 6.8v8v9+1 more2008-04-14
CVE-2008-1779 [MEDIUM] CWE-399 CVE-2008-1779: Sun Solaris 8, 9, and 10 allows "remote privileged" users to cause a denial of service (panic) via u
Sun Solaris 8, 9, and 10 allows "remote privileged" users to cause a denial of service (panic) via unknown vectors related to self encapsulated IP packets.
nvd
CVE-2009-2652P4MEDIUMCVSS 6.8v10.02009-08-03
CVE-2009-2652 [MEDIUM] CVE-2009-2652: Unspecified vulnerability in Solaris Trusted Extensions in Sun Solaris 10, and OpenSolaris snv_37 th
Unspecified vulnerability in Solaris Trusted Extensions in Sun Solaris 10, and OpenSolaris snv_37 through snv_120, allows remote attackers to cause a denial of service (panic) via vectors involving the parsing of labeled packets.
nvd
CVE-2003-0999P4HIGHCVSS 7.2v2.6v7.0+2 more2004-01-05
CVE-2003-0999 [HIGH] CVE-2003-0999: Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9
Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 may allow attackers to execute arbitrary code or read or write arbitrary files.
nvd
CVE-2004-0496P4HIGHCVSS 7.2v9.02004-12-06
CVE-2004-0496 [HIGH] CVE-2004-0496: Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access
Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access kernel memory, a different set of vulnerabilities than those identified in CVE-2004-0495, as found by the Sparse source code checking tool.
nvd
CVE-2008-0242P4HIGHCVSS 7.2v10.02008-01-12
CVE-2008-0242 [HIGH] CVE-2008-0242: Unspecified vulnerability in libdevinfo in Sun Solaris 10 allows local users to access files and gai
Unspecified vulnerability in libdevinfo in Sun Solaris 10 allows local users to access files and gain privileges via unknown vectors, related to login device permissions.
nvd
CVE-2006-4307P4HIGHCVSS 7.2v8.0v9.02006-08-23
CVE-2006-4307 [HIGH] CVE-2006-4307: Unspecified vulnerability in the format command in Sun Solaris 8 and 9 before 20060821 allows local
Unspecified vulnerability in the format command in Sun Solaris 8 and 9 before 20060821 allows local users to modify arbitrary files via unspecified vectors involving profiles that permit running format with elevated privileges, a different issue than CVE-2006-4306 and CVE-2006-4319.
nvd
CVE-2003-1059P4HIGHCVSS 7.2v2.6v9.02003-11-20
CVE-2003-1059 [HIGH] CVE-2003-1059: Unknown vulnerability in the libraries for the PGX32 frame buffer in Solaris 2.5.1 and 2.6 through 9
Unknown vulnerability in the libraries for the PGX32 frame buffer in Solaris 2.5.1 and 2.6 through 9 allows local users to gain root access.
nvd