Sun Solaris vulnerabilities
429 known vulnerabilities affecting sun/solaris.
Total CVEs
429
CISA KEV
0
Public exploits
102
Exploited in wild
6
Severity breakdown
CRITICAL49HIGH153MEDIUM172LOW55
Vulnerabilities
Page 20 of 22
CVE-1999-1025P4MEDIUMCVSS 4.6v2.61998-11-12
CVE-1999-1025 [MEDIUM] CVE-1999-1025: CDE screen lock program (screenlock) on Solaris 2.6 does not properly lock an unprivileged user's co
CDE screen lock program (screenlock) on Solaris 2.6 does not properly lock an unprivileged user's console session when the host is an NIS+ client, which allows others with physical access to login with any string.
nvd
CVE-2004-0653P4LOWCVSS 2.1v9.02004-08-06
CVE-2004-0653 [LOW] CVE-2004-0653: Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5
Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an "auth" module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other user's passwords by reading log files.
nvd
CVE-2009-4774P4MEDIUMCVSS 4.0v102010-04-21
CVE-2009-4774 [MEDIUM] CVE-2009-4774: Unspecified vulnerability in Sun Solaris 10 and OpenSolaris snv_49 through snv_117, when 64bit mode
Unspecified vulnerability in Sun Solaris 10 and OpenSolaris snv_49 through snv_117, when 64bit mode is used on the Intel x86 platform and a Linux (lx) branded zone is configured, allows local users to cause a denial of service (panic) via unspecified vectors, a different vulnerability than CVE-2007-6225.
nvd
CVE-2007-6505P4LOWCVSS 3.5v92007-12-20
CVE-2007-6505 [LOW] CWE-16 CVE-2007-6505: Solaris 9, with Solaris Auditing enabled and certain patches for sshd installed, can generate audit
Solaris 9, with Solaris Auditing enabled and certain patches for sshd installed, can generate audit records with an audit-ID of 0 even when the user logging into ssh is not root, which makes it easier for attackers to avoid detection and can make it more difficult to conduct forensics activities.
nvd
CVE-2005-0576P4LOWCVSS 3.6v9.02005-05-02
CVE-2005-0576 [LOW] CVE-2005-0576: Unknown vulnerability in Standard Type Services Framework (STSF) Font Server Daemon (stfontserverd)
Unknown vulnerability in Standard Type Services Framework (STSF) Font Server Daemon (stfontserverd) in Solaris 9 allows local users to modify or delete arbitrary files.
nvd
CVE-2006-0227P4LOWCVSS 2.6v9.0v10.02006-01-17
CVE-2006-0227 [LOW] CVE-2006-0227: Multiple unspecified vulnerabilities in lpsched in Sun Solaris 8, 9, and 10 allow local users to del
Multiple unspecified vulnerabilities in lpsched in Sun Solaris 8, 9, and 10 allow local users to delete arbitrary files or disable the LP print service via unknown attack vectors.
nvd
CVE-2002-2203P4MEDIUMCVSS 4.9v2.5.1v2.6+1 more2002-12-31
CVE-2002-2203 [MEDIUM] CVE-2002-2203: Unknown vulnerability in the System Serial Console terminal in Solaris 2.5.1, 2.6, and 7 allows loca
Unknown vulnerability in the System Serial Console terminal in Solaris 2.5.1, 2.6, and 7 allows local users to monitor keystrokes and possibly steal sensitive information.
nvd
CVE-2008-0718P4MEDIUMCVSS 4.7v9v102008-02-12
CVE-2008-0718 [MEDIUM] CWE-20 CVE-2008-0718: Unspecified vulnerability in the USB Mouse STREAMS module (usbms) in Sun Solaris 9 and 10, when 64-b
Unspecified vulnerability in the USB Mouse STREAMS module (usbms) in Sun Solaris 9 and 10, when 64-bit mode is enabled, allows local users to cause a denial of service (panic) via unspecified vectors.
nvd
CVE-1999-0129P4MEDIUMCVSS 4.6v2.4v2.5+1 more1996-12-03
CVE-1999-0129 [MEDIUM] CVE-1999-0129: Sendmail allows local users to write to a file and gain group permissions via a .forward or :include
Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
nvd
CVE-2007-5319P4LOWCVSS 3.5v8.0v9.0+1 more2007-10-09
CVE-2007-5319 [LOW] CVE-2007-5319: Unspecified vulnerability in the vuidmice STREAMS modules in Sun Solaris 8, 9, and 10 allows local u
Unspecified vulnerability in the vuidmice STREAMS modules in Sun Solaris 8, 9, and 10 allows local users with console (/dev/console) access to cause a denial of service ("unusable" system console) via unspecified vectors.
nvd
CVE-2006-5215P4LOWCVSS 2.6v8.0v9.0+1 more2006-10-10
CVE-2006-5215 [LOW] CVE-2006-5215: The Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 2006
The Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 20060317, and Solaris 8 through 10 before 20061006, allows local users to overwrite arbitrary files, or read another user's Xsession errors file, via a symlink attack on a /tmp/xses-$USER file.
nvd
CVE-2006-0161P4MEDIUMCVSS 4.6v9.02006-01-10
CVE-2006-0161 [MEDIUM] CVE-2006-0161: Unspecified vulnerability in uucp in Sun Solaris 8 and 9 has unknown impact and attack vectors. NOT
Unspecified vulnerability in uucp in Sun Solaris 8 and 9 has unknown impact and attack vectors. NOTE: due to the vagueness of the vendor advisory, it is not clear whether this is related to CVE-2004-0780.
nvd
CVE-1999-0303P4MEDIUMCVSS 4.6v1.1.3v1.1.4+2 more1998-05-21
CVE-1999-0303 [MEDIUM] CVE-1999-0303: Buffer overflow in BNU UUCP daemon (uucpd) through long hostnames.
Buffer overflow in BNU UUCP daemon (uucpd) through long hostnames.
nvd
CVE-2006-1782P4LOWCVSS 2.1v9.02006-04-13
CVE-2006-1782 [LOW] CVE-2006-1782: Unspecified vulnerability in Solaris 8 and 9 allows local users to obtain the LDAP Directory Server
Unspecified vulnerability in Solaris 8 and 9 allows local users to obtain the LDAP Directory Server root Distinguished Name (rootDN) password when a privileged user (1) runs idsconfig; or "insecurely" runs LDAP2 commands with the -w option, including (2) ldapadd, (3) ldapdelete, (4) ldapmodify, (5) ldapmodrdn, and (6) ldapsearch.
nvd
CVE-2004-1346P4LOWCVSS 2.1v9.02004-06-19
CVE-2004-1346 [LOW] CVE-2004-1346: The Sun Solaris Volume Manager (SVM) on Solaris 9 allows local users to cause a denial of service (k
The Sun Solaris Volume Manager (SVM) on Solaris 9 allows local users to cause a denial of service (kernel panic) via a malformed probe request to the SVM.
nvd
CVE-2005-2032P4LOWCVSS 2.1v7.0v8.0+1 more2005-06-16
CVE-2005-2032 [LOW] CVE-2005-2032: Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrar
Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files.
nvd
CVE-2004-0654P4LOWCVSS 2.1v7.0v8.0+1 more2004-08-06
CVE-2004-0654 [LOW] CVE-2004-0654: Unknown vulnerability in the Basic Security Module (BSM), when configured to audit either the Admini
Unknown vulnerability in the Basic Security Module (BSM), when configured to audit either the Administrative (ad) or the System-Wide Administration (as) audit class in Solaris 7, 8, and 9, allows local users to cause a denial of service (kernel panic).
nvd
CVE-2003-1072P4LOWCVSS 2.1v8.02003-04-28
CVE-2003-1072 [LOW] CVE-2003-1072: Memory leak in lofiadm in Solaris 8 allows local users to cause a denial of service (kernel memory c
Memory leak in lofiadm in Solaris 8 allows local users to cause a denial of service (kernel memory consumption).
nvd
CVE-2004-0481P4LOWCVSS 2.1v8.0v9.02005-02-23
CVE-2004-0481 [LOW] CVE-2004-0481: The logging feature in kcms_configure in the KCMS package on Solaris 8 and 9, and possibly other ver
The logging feature in kcms_configure in the KCMS package on Solaris 8 and 9, and possibly other versions, allows local users to corrupt arbitrary files via a symlink attack on the KCS_ClogFile file.
nvd
CVE-2006-5213P4LOWCVSS 3.6v10.02006-10-10
CVE-2006-5213 [LOW] CVE-2006-5213: Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local
Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local users to intercept or spoof packets by creating a raw socket on a link aggregation (network device aggregation).
nvd