Sun Sunos vulnerabilities
537 known vulnerabilities affecting sun/sunos.
Total CVEs
537
CISA KEV
0
Public exploits
105
Exploited in wild
0
Severity breakdown
CRITICAL51HIGH178MEDIUM217LOW91
Vulnerabilities
Page 19 of 27
CVE-2002-0572HIGHCVSS 7.2PoCv5.5.1v5.7+1 more2002-07-03
CVE-2002-0572 [HIGH] CVE-2002-0572: FreeBSD 4.5 and earlier, and possibly other BSD-based operating systems, allows local users to write
FreeBSD 4.5 and earlier, and possibly other BSD-based operating systems, allows local users to write to or read from restricted files by closing the file descriptors 0 (standard input), 1 (standard output), or 2 (standard error), which may then be reused by a called setuid process that intended to perform I/O on normal files.
nvd
CVE-2002-0089HIGHCVSS 7.2v5.5v5.5.1+1 more2002-03-15
CVE-2002-0089 [HIGH] CVE-2002-0089: Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via
Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via long arguments to (1) the -d command line option, or (2) the PRODVERS argument in the .cdtoc file.
nvd
CVE-2002-0084HIGHCVSS 7.2v5.72002-03-15
CVE-2002-0084 [HIGH] CVE-2002-0084: Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local user
Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long mount argument.
nvd
CVE-2002-0088HIGHCVSS 7.2v5.72002-03-15
CVE-2002-0088 [HIGH] CVE-2002-0088: Buffer overflow in admintool in Solaris 2.6, 7, and 8 allows local users to gain root privileges via
Buffer overflow in admintool in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long media installation path.
nvd
CVE-2002-0085MEDIUMCVSS 5.0v5.72002-03-15
CVE-2002-0085 [MEDIUM] CVE-2002-0085: cachefsd in Solaris 2.6, 7, and 8 allows remote attackers to cause a denial of service (crash) via a
cachefsd in Solaris 2.6, 7, and 8 allows remote attackers to cause a denial of service (crash) via an invalid procedure call in an RPC request.
nvd
CVE-2001-1583CRITICALCVSS 10.0PoC≤ 5.92001-12-31
CVE-2001-1583 [CRITICAL] CVE-2001-1583: lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands v
lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request with a crafted control file that is not properly handled when lpd invokes a mail program. NOTE: this might be the same vulnerability as CVE-2000-1220.
nvd
CVE-2001-1582HIGHCVSS 7.2PoCv5.82001-12-31
CVE-2001-1582 [HIGH] CWE-119 CVE-2001-1582: Buffer overflow in the LDAP naming services library (libsldap) in Sun Solaris 8 allows local users t
Buffer overflow in the LDAP naming services library (libsldap) in Sun Solaris 8 allows local users to execute arbitrary code via a long LDAP_OPTIONS environment variable to a privileged program that uses libsldap.
nvd
CVE-2001-1555MEDIUMCVSS 4.6v5.82001-12-31
CVE-2001-1555 [MEDIUM] CVE-2001-1555: pt_chmod in Solaris 8 does not call fdetach to reset terminal privileges when users log out of termi
pt_chmod in Solaris 8 does not call fdetach to reset terminal privileges when users log out of terminals, which allows local users to write to other users' terminals by modifying the ACL of a TTY.
nvd
CVE-2001-1503LOWCVSS 2.1v5.5v5.5.1+3 more2001-12-31
CVE-2001-1503 [LOW] CVE-2001-1503: The finger daemon (in.fingerd) in Sun Solaris 2.5 through 8 and SunOS 5.5 through 5.8 allows remote
The finger daemon (in.fingerd) in Sun Solaris 2.5 through 8 and SunOS 5.5 through 5.8 allows remote attackers to list all accounts on a host by typing finger 'a b c d e f g h'@host.
nvd
CVE-2001-0797CRITICALCVSS 10.0PoCv5.0v5.1+7 more2001-12-12
CVE-2001-0797 [CRITICAL] CVE-2001-0797: Buffer overflow in login in various System V based operating systems allows remote attackers to exec
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as telnet and rlogin.
nvd
CVE-2001-0652HIGHCVSS 7.2PoC≤ 5.92001-10-30
CVE-2001-0652 [HIGH] CVE-2001-0652: Heap overflow in xlock in Solaris 2.6 through 8 allows local users to gain root privileges via a lon
Heap overflow in xlock in Solaris 2.6 through 8 allows local users to gain root privileges via a long (1) XFILESEARCHPATH or (2) XUSERFILESEARCHPATH environmental variable.
nvd
CVE-2001-0779CRITICALCVSS 10.0PoCv5.7v5.82001-10-18
CVE-2001-0779 [CRITICAL] CVE-2001-0779: Buffer overflow in rpc.yppasswdd (yppasswd server) in Solaris 2.6, 7 and 8 allows remote attackers t
Buffer overflow in rpc.yppasswdd (yppasswd server) in Solaris 2.6, 7 and 8 allows remote attackers to gain root access via a long username.
nvd
CVE-2001-1414HIGHCVSS 7.5v5.5.1v5.7+1 more2001-10-09
CVE-2001-1414 [HIGH] CVE-2001-1414: The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access,
The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access, which allows remote attackers to hide their activities, possibly when certain BSM audit files are not present under the FTP root.
nvd
CVE-2001-0699HIGHCVSS 7.2v5.82001-09-20
CVE-2001-0699 [HIGH] CVE-2001-0699: Buffer overflow in cb_reset in the System Service Processor (SSP) package of SunOS 5.8 allows a loca
Buffer overflow in cb_reset in the System Service Processor (SSP) package of SunOS 5.8 allows a local user to execute arbitrary code via a long argument.
nvd
CVE-2001-0554CRITICALCVSS 10.0PoCv5.0v5.1+7 more2001-08-14
CVE-2001-0554 [CRITICAL] CWE-120 CVE-2001-0554: Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attack
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
nvd
CVE-2001-0548MEDIUMCVSS 4.6PoCv5.72001-08-14
CVE-2001-0548 [MEDIUM] CVE-2001-0548: Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL en
Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL environment variable.
nvd
CVE-2001-0565MEDIUMCVSS 4.6PoC≤ 5.9v5.5+2 more2001-08-14
CVE-2001-0565 [MEDIUM] CVE-2001-0565: Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privile
Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F' command line option.
nvd
CVE-2001-0594MEDIUMCVSS 4.6PoCv5.7v5.82001-08-02
CVE-2001-0594 [MEDIUM] CVE-2001-0594: kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privilege
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.
nvd
CVE-2001-0595MEDIUMCVSS 4.6PoCv5.7v5.82001-08-02
CVE-2001-0595 [MEDIUM] CVE-2001-0595: Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute
Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_configure program.
nvd
CVE-2001-0353CRITICALCVSS 10.0v5.7v5.82001-07-21
CVE-2001-0353 [CRITICAL] CVE-2001-0353: Buffer overflow in the line printer daemon (in.lpd) for Solaris 8 and earlier allows local and remot
Buffer overflow in the line printer daemon (in.lpd) for Solaris 8 and earlier allows local and remote attackers to gain root privileges via a "transfer job" routine.
nvd