cbcvebase.

Sun Solaris vulnerabilities

429 known vulnerabilities affecting sun/solaris.

Total CVEs
429
CISA KEV
0
Public exploits
102
Exploited in wild
6
Severity breakdown
CRITICAL49HIGH153MEDIUM172LOW55

Vulnerabilities

Page 10 of 22
CVE-2004-1767P4HIGHCVSS 7.2v2.6v7.0+2 more2004-12-31
CVE-2004-1767 [HIGH] CWE-264 CVE-2004-1767: The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary lo The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel modules (LKM), possibly involving the modload function.
nvd
CVE-2005-0816P4HIGHCVSS 7.2v7.0v8.0+1 more2005-05-02
CVE-2005-0816 [HIGH] CVE-2005-0816: Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges. Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges.
nvd
CVE-2003-0091P4HIGHCVSS 7.2v2.62003-04-02
CVE-2003-0091 [HIGH] CVE-2003-0091: Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local us Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local users to gain root privilege.
nvd
CVE-2003-1078P4HIGHCVSS 7.5v2.6v7.0+1 more2003-02-28
CVE-2003-1078 [HIGH] CVE-2003-1078: The FTP client for Solaris 2.6, 7, and 8 with the debug (-d) flag enabled displays the user password The FTP client for Solaris 2.6, 7, and 8 with the debug (-d) flag enabled displays the user password on the screen during login.
nvd
CVE-1999-0190P4HIGHCVSS 7.2v2.4v2.5+2 more1998-04-08
CVE-1999-0190 [HIGH] CVE-1999-0190: Solaris rpcbind can be exploited to overwrite arbitrary files and gain root access. Solaris rpcbind can be exploited to overwrite arbitrary files and gain root access.
nvd
CVE-2008-3838P4HIGHCVSS 7.2v102008-08-27
CVE-2008-3838 [HIGH] CWE-20 CVE-2008-3838: Unspecified vulnerability in the NFS Remote Procedure Calls (RPC) zones implementation in Sun Solari Unspecified vulnerability in the NFS Remote Procedure Calls (RPC) zones implementation in Sun Solaris 10 and OpenSolaris before snv_88 allows local administrators of non-global zones to read and modify NFS traffic for arbitrary non-global zones, possibly leading to file modifications or a denial of service.
nvd
CVE-1999-0837P4CRITICALCVSS 10.0v7.01999-11-10
CVE-1999-0837 [CRITICAL] CVE-1999-0837: Denial of service in BIND by improperly closing TCP sessions via so_linger. Denial of service in BIND by improperly closing TCP sessions via so_linger.
nvd
CVE-2006-7140P4MEDIUMCVSS 5.8v10.02007-03-07
CVE-2006-7140 [MEDIUM] CVE-2006-7140: The libike library, as used by in.iked, elfsign, and kcfd in Sun Solaris 9 and 10, when using an RSA The libike library, as used by in.iked, elfsign, and kcfd in Sun Solaris 9 and 10, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents libike from correctly verifying X.509 and other certificates that use PKCS #1, a s
nvd
CVE-1999-0213P4CRITICALCVSS 10.0v2.61998-07-15
CVE-1999-0213 [CRITICAL] CVE-1999-0213: libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind. libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind.
nvd
CVE-1999-0022P4HIGHCVSS 7.8v4.1.31996-07-03
CVE-1999-0022 [HIGH] CWE-125 CVE-1999-0022: Local user gains root privileges via buffer overflow in rdist, via expstr() function. Local user gains root privileges via buffer overflow in rdist, via expstr() function.
nvd
CVE-2007-6180P4HIGHCVSS 7.6v8.0v9.0+1 more2007-11-30
CVE-2007-6180 [HIGH] CWE-362 CVE-2007-6180: Race condition in the Remote Procedure Call kernel module (rpcmod) in Sun Solaris 8 through 10 allow Race condition in the Remote Procedure Call kernel module (rpcmod) in Sun Solaris 8 through 10 allows local users to cause a denial of service (NULL dereference and panic) via unspecified vectors.
nvd
CVE-2008-3666P4HIGHCVSS 7.1v102008-08-13
CVE-2008-3666 [HIGH] CVE-2008-3666: Unspecified vulnerability in Sun Solaris 10 and OpenSolaris before snv_96 allows (1) context-depende Unspecified vulnerability in Sun Solaris 10 and OpenSolaris before snv_96 allows (1) context-dependent attackers to cause a denial of service (panic) via vectors involving creation of a crafted file and use of the sendfilev system call, as demonstrated by a file served by an Apache 2.2.x web server with EnableSendFile configured; and (2) local users to cause a
nvd
CVE-2009-2297P4HIGHCVSS 7.1v10.02009-07-02
CVE-2009-2297 [HIGH] CVE-2009-2297: Unspecified vulnerability in the udp subsystem in the kernel in Sun Solaris 10, and OpenSolaris snv_ Unspecified vulnerability in the udp subsystem in the kernel in Sun Solaris 10, and OpenSolaris snv_90 through snv_108, when Solaris Trusted Extensions is enabled, allows remote attackers to cause a denial of service (panic) via unspecified vectors involving the crgetlabel function, related to a "TX panic." NOTE: this issue exists because of a regression in ear
nvd
CVE-2008-1779P4MEDIUMCVSS 6.8v8v9+1 more2008-04-14
CVE-2008-1779 [MEDIUM] CWE-399 CVE-2008-1779: Sun Solaris 8, 9, and 10 allows "remote privileged" users to cause a denial of service (panic) via u Sun Solaris 8, 9, and 10 allows "remote privileged" users to cause a denial of service (panic) via unknown vectors related to self encapsulated IP packets.
nvd
CVE-2009-2652P4MEDIUMCVSS 6.8v10.02009-08-03
CVE-2009-2652 [MEDIUM] CVE-2009-2652: Unspecified vulnerability in Solaris Trusted Extensions in Sun Solaris 10, and OpenSolaris snv_37 th Unspecified vulnerability in Solaris Trusted Extensions in Sun Solaris 10, and OpenSolaris snv_37 through snv_120, allows remote attackers to cause a denial of service (panic) via vectors involving the parsing of labeled packets.
nvd
CVE-2003-0999P4HIGHCVSS 7.2v2.6v7.0+2 more2004-01-05
CVE-2003-0999 [HIGH] CVE-2003-0999: Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 may allow attackers to execute arbitrary code or read or write arbitrary files.
nvd
CVE-2004-0496P4HIGHCVSS 7.2v9.02004-12-06
CVE-2004-0496 [HIGH] CVE-2004-0496: Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access kernel memory, a different set of vulnerabilities than those identified in CVE-2004-0495, as found by the Sparse source code checking tool.
nvd
CVE-2008-0242P4HIGHCVSS 7.2v10.02008-01-12
CVE-2008-0242 [HIGH] CVE-2008-0242: Unspecified vulnerability in libdevinfo in Sun Solaris 10 allows local users to access files and gai Unspecified vulnerability in libdevinfo in Sun Solaris 10 allows local users to access files and gain privileges via unknown vectors, related to login device permissions.
nvd
CVE-2006-4307P4HIGHCVSS 7.2v8.0v9.02006-08-23
CVE-2006-4307 [HIGH] CVE-2006-4307: Unspecified vulnerability in the format command in Sun Solaris 8 and 9 before 20060821 allows local Unspecified vulnerability in the format command in Sun Solaris 8 and 9 before 20060821 allows local users to modify arbitrary files via unspecified vectors involving profiles that permit running format with elevated privileges, a different issue than CVE-2006-4306 and CVE-2006-4319.
nvd
CVE-2003-1059P4HIGHCVSS 7.2v2.6v9.02003-11-20
CVE-2003-1059 [HIGH] CVE-2003-1059: Unknown vulnerability in the libraries for the PGX32 frame buffer in Solaris 2.5.1 and 2.6 through 9 Unknown vulnerability in the libraries for the PGX32 frame buffer in Solaris 2.5.1 and 2.6 through 9 allows local users to gain root access.
nvd