Sun Sunos vulnerabilities
537 known vulnerabilities affecting sun/sunos.
Total CVEs
537
CISA KEV
0
Public exploits
105
Exploited in wild
6
Severity breakdown
CRITICAL51HIGH177MEDIUM218LOW91
Vulnerabilities
Page 25 of 27
CVE-1999-1449P4LOWCVSS 2.1v4.1.41997-05-19
CVE-1999-1449 [LOW] CVE-1999-1449: SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by
SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device.
nvd
CVE-2013-1530P4LOWCVSS 3.8v5.102013-04-17
CVE-2013-1530 [LOW] CVE-2013-1530: Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect availability via unk
Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect availability via unknown vectors related to Kernel.
nvd
CVE-2012-4295P4LOWCVSS 3.3v5.112012-08-16
CVE-2012-4295 [LOW] CWE-20 CVE-2012-4295: Array index error in the channelised_fill_sdh_g707_format function in epan/dissectors/packet-erf.c i
Array index error in the channelised_fill_sdh_g707_format function in epan/dissectors/packet-erf.c in the ERF dissector in Wireshark 1.8.x before 1.8.2 might allow remote attackers to cause a denial of service (application crash) via a crafted speed (aka rate) value.
nvd
CVE-2012-3165P4LOWCVSS 3.6v5.8v5.9+2 more2012-10-17
CVE-2012-3165 [LOW] CVE-2012-3165: Unspecified vulnerability in Oracle Sun Solaris 8, 9, 10, and 11 allows local users to affect confid
Unspecified vulnerability in Oracle Sun Solaris 8, 9, 10, and 11 allows local users to affect confidentiality and integrity via unknown vectors related to mailx.
nvd
CVE-2013-0412P4LOWCVSS 3.6v5.8v5.9+2 more2013-04-17
CVE-2013-0412 [LOW] CVE-2013-0412: Unspecified vulnerability in Oracle Sun Solaris 8, 9, 10, and 11 allows local users to affect integr
Unspecified vulnerability in Oracle Sun Solaris 8, 9, 10, and 11 allows local users to affect integrity and availability via unknown vectors related to Utility/pax.
nvd
CVE-2011-0801P4LOWCVSS 3.6v5.10v5.112011-04-20
CVE-2011-0801 [LOW] CVE-2011-0801: Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows local users to affect confident
Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows local users to affect confidentiality and integrity via unknown vectors related to cp.
nvd
CVE-2011-2289P4LOWCVSS 3.6v5.102011-07-21
CVE-2011-2289 [LOW] CVE-2011-2289: Unspecified vulnerability in Oracle Solaris 10 allows local users to affect integrity and availabili
Unspecified vulnerability in Oracle Solaris 10 allows local users to affect integrity and availability via unknown vectors related to LiveUpgrade.
nvd
CVE-2003-1061P4LOWCVSS 1.2v5.7v5.82003-10-14
CVE-2003-1061 [LOW] CVE-2003-1061: Race condition in Solaris 2.6 through 9 allows local users to cause a denial of service (kernel pani
Race condition in Solaris 2.6 through 9 allows local users to cause a denial of service (kernel panic), as demonstrated via the namefs function, pipe, and certain STREAMS routines.
nvd
CVE-2013-5883P4LOWCVSS 3.2v5.82014-01-15
CVE-2013-5883 [LOW] CVE-2013-5883: Unspecified vulnerability in Oracle Solaris 8 allows local users to affect integrity and availabilit
Unspecified vulnerability in Oracle Solaris 8 allows local users to affect integrity and availability via unknown vectors related to Kernel.
nvd
CVE-2007-0895P4LOWCVSS 2.6v5.82007-02-13
CVE-2007-0895 [LOW] CVE-2007-0895: Race condition in recursive directory deletion with the (1) -r or (2) -R option in rm in Solaris 8 t
Race condition in recursive directory deletion with the (1) -r or (2) -R option in rm in Solaris 8 through 10 before 20070208 allows local users to delete files and directories as the user running rm by moving a low-level directory to a higher level as it is being deleted, which causes rm to chdir to a ".." directory that is higher than expected, possibly up to
nvd
CVE-1999-0676P4MEDIUMCVSS 4.6v5.5v5.5.11999-08-09
CVE-1999-0676 [MEDIUM] CVE-1999-0676: sdtcm_convert in Solaris 2.6 allows a local user to overwrite sensitive files via a symlink attack.
sdtcm_convert in Solaris 2.6 allows a local user to overwrite sensitive files via a symlink attack.
nvd
CVE-1999-1102P4LOWCVSS 2.1≤ 4.1.11999-12-31
CVE-1999-1102 [LOW] CVE-1999-1102: lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to
lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times.
nvd
CVE-2005-3071P4LOWCVSS 2.1v5.82005-09-27
CVE-2005-3071 [LOW] CVE-2005-3071: Unspecified vulnerability in Unix File System (UFS) on Solaris 8 and 9, when logging is enabled, all
Unspecified vulnerability in Unix File System (UFS) on Solaris 8 and 9, when logging is enabled, allows local users to cause a denial of service ("soft hang") via certain write operations to UFS.
nvd
CVE-2004-1355P4LOWCVSS 2.1v5.92004-04-26
CVE-2004-1355 [LOW] CVE-2004-1355: Unknown vulnerability in the TCP/IP stack for Sun Solaris 8 and 9 allows local users to cause a deni
Unknown vulnerability in the TCP/IP stack for Sun Solaris 8 and 9 allows local users to cause a denial of service (system panic) via unknown vectors.
nvd
CVE-2005-1518P4LOWCVSS 2.1v5.7v5.82005-05-11
CVE-2005-1518 [LOW] CVE-2005-1518: Unknown vulnerability in Solaris 7 through 9, when using Federated Naming Services (FNS), autofs, an
Unknown vulnerability in Solaris 7 through 9, when using Federated Naming Services (FNS), autofs, and FNS X.500 configuration, allows local users to cause a denial of service (automountd crash) when "accessing" /xfn/_x500.
nvd
CVE-2012-0569P4LOWCVSS 3.3v5.102013-01-17
CVE-2012-0569 [LOW] CVE-2012-0569: Unspecified vulnerability Oracle Sun Solaris 10 allows local users to affect confidentiality and int
Unspecified vulnerability Oracle Sun Solaris 10 allows local users to affect confidentiality and integrity via unknown vectors related to Install/smpatch.
nvd
CVE-2015-0429P4LOWCVSS 3.3v5.10v5.112015-01-21
CVE-2015-0429 [LOW] CVE-2015-0429: Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect integrity and
Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect integrity and availability via vectors related to RPC Utility.
nvd
CVE-1999-0143P4MEDIUMCVSS 4.6v5.3v5.41996-02-21
CVE-1999-0143 [MEDIUM] CVE-1999-0143: Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys
Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys.
nvd
CVE-2015-0397P4LOWCVSS 2.1v5.112015-01-21
CVE-2015-0397 [LOW] CVE-2015-0397: Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via unk
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via unknown vectors related to File System, a different vulnerability than CVE-2014-6570 and CVE-2014-6600.
nvd
CVE-1999-1137P4LOWCVSS 2.1≤ 5.2v4.1+1 more1993-10-01
CVE-1999-1137 [LOW] CVE-1999-1137: The permissions for the /dev/audio device on Solaris 2.2 and earlier, and SunOS 4.1.x, allow any loc
The permissions for the /dev/audio device on Solaris 2.2 and earlier, and SunOS 4.1.x, allow any local user to read from the device, which could be used by an attacker to monitor conversations happening near a machine that has a microphone.
nvd