Sun Sunos vulnerabilities
537 known vulnerabilities affecting sun/sunos.
Total CVEs
537
CISA KEV
0
Public exploits
105
Exploited in wild
6
Severity breakdown
CRITICAL51HIGH177MEDIUM218LOW91
Vulnerabilities
Page 7 of 27
CVE-2002-0084P4HIGHCVSS 7.2v5.72002-03-15
CVE-2002-0084 [HIGH] CVE-2002-0084: Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local user
Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long mount argument.
nvd
CVE-2004-1307P3HIGHCVSS 7.5v5.7v5.82004-12-21
CVE-2004-1307 [HIGH] CVE-2004-1307: Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remot
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
nvd
CVE-2001-0548P4MEDIUMCVSS 4.6PoCv5.72001-08-14
CVE-2001-0548 [MEDIUM] CVE-2001-0548: Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL en
Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL environment variable.
nvd
CVE-2012-3210P3HIGHCVSS 7.8v5.112012-10-17
CVE-2012-3210 [HIGH] CVE-2012-3210: Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect availability vi
Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect availability via unknown vectors related to Kernel.
nvd
CVE-1999-0099P3CRITICALCVSS 10.0v4.1.3v4.1.3u1+3 more1995-10-19
CVE-1999-0099 [CRITICAL] CVE-1999-0099: Buffer overflow in syslog utility allows local or remote attackers to gain root privileges.
Buffer overflow in syslog utility allows local or remote attackers to gain root privileges.
nvd
CVE-1999-0908P4MEDIUMCVSS 5.0PoCv5.5.1v5.71999-09-23
CVE-1999-0908 [MEDIUM] CVE-1999-0908: Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to
Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to panic as a result of recursive calls to mutex_enter.
nvd
CVE-2001-0565P4MEDIUMCVSS 4.6PoC≤ 5.9v5.5+2 more2001-08-14
CVE-2001-0565 [MEDIUM] CVE-2001-0565: Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privile
Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F' command line option.
nvd
CVE-2003-1073P4LOWCVSS 1.2PoCv5.5v5.5.1+2 more2003-12-31
CVE-2003-1073 [LOW] CVE-2003-1073: A race condition in the at command for Solaris 2.6 through 9 allows local users to delete arbitrary
A race condition in the at command for Solaris 2.6 through 9 allows local users to delete arbitrary files via the -r argument with .. (dot dot) sequences in the job name, then modifying the directory structure after at checks permissions to delete the file and before the deletion actually takes place.
nvd
CVE-2004-1082P4HIGHCVSS 7.5v5.82004-02-03
CVE-2004-1082 [HIGH] CVE-2004-1082: mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce
mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials.
nvd
CVE-2002-0677P3HIGHCVSS 7.5v5.5.1v5.7+1 more2002-07-23
CVE-2002-0677 [HIGH] CVE-2002-0677: CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory loca
CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.
nvd
CVE-2001-0594P4MEDIUMCVSS 4.6PoCv5.7v5.82001-08-02
CVE-2001-0594 [MEDIUM] CVE-2001-0594: kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privilege
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.
nvd
CVE-1999-1014P4MEDIUMCVSS 4.6PoCv5.71999-09-13
CVE-1999-1014 [MEDIUM] CVE-1999-1014: Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a l
Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument.
nvd
CVE-1999-0097P4CRITICALCVSS 10.0v4.1.3cv4.1.3u1+5 more1997-10-29
CVE-1999-0097 [CRITICAL] CVE-1999-0097: The AIX FTP client can be forced to execute commands from a malicious server through shell metachara
The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).
nvd
CVE-2011-0841P4HIGHCVSS 7.8v5.112011-04-20
CVE-2011-0841 [HIGH] CVE-2011-0841: Unspecified vulnerability in Oracle Solaris 11 Express allows remote attackers to affect availabilit
Unspecified vulnerability in Oracle Solaris 11 Express allows remote attackers to affect availability, related to TCP/IP.
nvd
CVE-2007-5225P4MEDIUMCVSS 4.9PoCv5.8v5.9+1 more2007-10-05
CVE-2007-5225 [MEDIUM] CWE-189 CVE-2007-5225: Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local
Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local users to read the contents of unspecified memory locations via a negative maximum length value to the I_PEEK ioctl.
nvd
CVE-2001-0059P4MEDIUMCVSS 6.2PoCv5.72001-02-12
CVE-2001-0059 [MEDIUM] CVE-2001-0059: patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.
patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.
nvd
CVE-2011-2287P4HIGHCVSS 7.8v5.8v5.9+2 more2011-07-21
CVE-2011-2287 [HIGH] CVE-2011-2287: Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows remote attackers to affe
Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows remote attackers to affect availability via unknown vectors related to fingerd.
nvd
CVE-2012-4298P4MEDIUMCVSS 5.4v5.112012-08-16
CVE-2012-4298 [MEDIUM] CWE-189 CVE-2012-4298: Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxV
Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x before 1.8.2 allows user-assisted remote attackers to execute arbitrary code via a crafted packet-trace file that triggers a buffer overflow.
nvd
CVE-2009-0873P4MEDIUMCVSS 6.8v5.102009-03-11
CVE-2009-0873 [MEDIUM] CWE-264 CVE-2009-0873: The NFS daemon (aka nfsd) in Sun Solaris 10 and OpenSolaris before snv_106, when NFSv3 is used, does
The NFS daemon (aka nfsd) in Sun Solaris 10 and OpenSolaris before snv_106, when NFSv3 is used, does not properly implement combinations of security modes, which allows remote attackers to bypass intended access restrictions and read or modify files, as demonstrated by a combination of the sec=sys and sec=krb5 security modes, related to modes that "ov
nvd
CVE-2013-3757P4MEDIUMCVSS 6.4v5.8v5.9+2 more2013-07-17
CVE-2013-3757 [MEDIUM] CVE-2013-3757: Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 allows remote attackers to affect integ
Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 allows remote attackers to affect integrity and availability via vectors related to SMF/File Locking Services.
nvd