cbcvebase.

Sun Sunos vulnerabilities

537 known vulnerabilities affecting sun/sunos.

Total CVEs
537
CISA KEV
0
Public exploits
105
Exploited in wild
6
Severity breakdown
CRITICAL51HIGH177MEDIUM218LOW91

Vulnerabilities

Page 7 of 27
CVE-2002-0084P4HIGHCVSS 7.2v5.72002-03-15
CVE-2002-0084 [HIGH] CVE-2002-0084: Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local user Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long mount argument.
nvd
CVE-2004-1307P3HIGHCVSS 7.5v5.7v5.82004-12-21
CVE-2004-1307 [HIGH] CVE-2004-1307: Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remot Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
nvd
CVE-2001-0548P4MEDIUMCVSS 4.6PoCv5.72001-08-14
CVE-2001-0548 [MEDIUM] CVE-2001-0548: Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL en Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL environment variable.
nvd
CVE-2012-3210P3HIGHCVSS 7.8v5.112012-10-17
CVE-2012-3210 [HIGH] CVE-2012-3210: Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect availability vi Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect availability via unknown vectors related to Kernel.
nvd
CVE-1999-0099P3CRITICALCVSS 10.0v4.1.3v4.1.3u1+3 more1995-10-19
CVE-1999-0099 [CRITICAL] CVE-1999-0099: Buffer overflow in syslog utility allows local or remote attackers to gain root privileges. Buffer overflow in syslog utility allows local or remote attackers to gain root privileges.
nvd
CVE-1999-0908P4MEDIUMCVSS 5.0PoCv5.5.1v5.71999-09-23
CVE-1999-0908 [MEDIUM] CVE-1999-0908: Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to panic as a result of recursive calls to mutex_enter.
nvd
CVE-2001-0565P4MEDIUMCVSS 4.6PoC≤ 5.9v5.5+2 more2001-08-14
CVE-2001-0565 [MEDIUM] CVE-2001-0565: Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privile Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F' command line option.
nvd
CVE-2003-1073P4LOWCVSS 1.2PoCv5.5v5.5.1+2 more2003-12-31
CVE-2003-1073 [LOW] CVE-2003-1073: A race condition in the at command for Solaris 2.6 through 9 allows local users to delete arbitrary A race condition in the at command for Solaris 2.6 through 9 allows local users to delete arbitrary files via the -r argument with .. (dot dot) sequences in the job name, then modifying the directory structure after at checks permissions to delete the file and before the deletion actually takes place.
nvd
CVE-2004-1082P4HIGHCVSS 7.5v5.82004-02-03
CVE-2004-1082 [HIGH] CVE-2004-1082: mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials.
nvd
CVE-2002-0677P3HIGHCVSS 7.5v5.5.1v5.7+1 more2002-07-23
CVE-2002-0677 [HIGH] CVE-2002-0677: CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory loca CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.
nvd
CVE-2001-0594P4MEDIUMCVSS 4.6PoCv5.7v5.82001-08-02
CVE-2001-0594 [MEDIUM] CVE-2001-0594: kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privilege kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.
nvd
CVE-1999-1014P4MEDIUMCVSS 4.6PoCv5.71999-09-13
CVE-1999-1014 [MEDIUM] CVE-1999-1014: Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a l Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument.
nvd
CVE-1999-0097P4CRITICALCVSS 10.0v4.1.3cv4.1.3u1+5 more1997-10-29
CVE-1999-0097 [CRITICAL] CVE-1999-0097: The AIX FTP client can be forced to execute commands from a malicious server through shell metachara The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).
nvd
CVE-2011-0841P4HIGHCVSS 7.8v5.112011-04-20
CVE-2011-0841 [HIGH] CVE-2011-0841: Unspecified vulnerability in Oracle Solaris 11 Express allows remote attackers to affect availabilit Unspecified vulnerability in Oracle Solaris 11 Express allows remote attackers to affect availability, related to TCP/IP.
nvd
CVE-2007-5225P4MEDIUMCVSS 4.9PoCv5.8v5.9+1 more2007-10-05
CVE-2007-5225 [MEDIUM] CWE-189 CVE-2007-5225: Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local users to read the contents of unspecified memory locations via a negative maximum length value to the I_PEEK ioctl.
nvd
CVE-2001-0059P4MEDIUMCVSS 6.2PoCv5.72001-02-12
CVE-2001-0059 [MEDIUM] CVE-2001-0059: patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack. patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.
nvd
CVE-2011-2287P4HIGHCVSS 7.8v5.8v5.9+2 more2011-07-21
CVE-2011-2287 [HIGH] CVE-2011-2287: Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows remote attackers to affe Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows remote attackers to affect availability via unknown vectors related to fingerd.
nvd
CVE-2012-4298P4MEDIUMCVSS 5.4v5.112012-08-16
CVE-2012-4298 [MEDIUM] CWE-189 CVE-2012-4298: Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxV Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x before 1.8.2 allows user-assisted remote attackers to execute arbitrary code via a crafted packet-trace file that triggers a buffer overflow.
nvd
CVE-2009-0873P4MEDIUMCVSS 6.8v5.102009-03-11
CVE-2009-0873 [MEDIUM] CWE-264 CVE-2009-0873: The NFS daemon (aka nfsd) in Sun Solaris 10 and OpenSolaris before snv_106, when NFSv3 is used, does The NFS daemon (aka nfsd) in Sun Solaris 10 and OpenSolaris before snv_106, when NFSv3 is used, does not properly implement combinations of security modes, which allows remote attackers to bypass intended access restrictions and read or modify files, as demonstrated by a combination of the sec=sys and sec=krb5 security modes, related to modes that "ov
nvd
CVE-2013-3757P4MEDIUMCVSS 6.4v5.8v5.9+2 more2013-07-17
CVE-2013-3757 [MEDIUM] CVE-2013-3757: Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 allows remote attackers to affect integ Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 allows remote attackers to affect integrity and availability via vectors related to SMF/File Locking Services.
nvd
Sun Sunos vulnerabilities | cvebase