Skip to main content

Vendor/product archive

sun / solaris CVEs

Beta · best-effort

486 CVEs tagged to sun / solaris84 Critical, 143 High, 196 Medium, 63 Low, 0 Unrated.

CVE-2009-2488

Published Jul 16, 2009

Unspecified vulnerability in the NFSv4 module in the kernel in Sun Solaris 10, and OpenSolaris snv_102 through snv_119, allows local users to cause a denial of service (client pan…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2487

Published Jul 16, 2009

Use-after-free vulnerability in the frpr_icmp function in the ipfilter (aka IP Filter) subsystem in Sun Solaris 10, and OpenSolaris snv_45 through snv_110, allows remote attackers…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-2486

Published Jul 16, 2009

Unspecified vulnerability in the SCTP implementation in Sun Solaris 10, and OpenSolaris before snv_120, allows remote attackers to cause a denial of service (panic) via unspecifie…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-2430

Published Jul 10, 2009

Unspecified vulnerability in auditconfig in Sun Solaris 8, 9, 10, and OpenSolaris snv_01 through snv_58, when Solaris Auditing is enabled, allows local users with an RBAC executio…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2297

Published Jul 2, 2009

Unspecified vulnerability in the udp subsystem in the kernel in Sun Solaris 10, and OpenSolaris snv_90 through snv_108, when Solaris Trusted Extensions is enabled, allows remote a…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2009-2296

Published Jul 2, 2009

The NFSv4 server kernel module in Sun Solaris 10, and OpenSolaris before snv_119, does not properly implement the nfs_portmon setting, which allows remote attackers to access shar…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-2283

Published Jul 1, 2009

Multiple cross-site scripting (XSS) vulnerabilities in the help jsp scripts in Sun Java Web Console 3.0.2 through 3.0.5, and Sun Java Web Console in Solaris 10, allow remote attac…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2187

Published Jun 25, 2009

Multiple memory leaks in the (1) IP and (2) IPv6 multicast implementation in the kernel in Sun Solaris 10, and OpenSolaris snv_67 through snv_93, allow local users to cause a deni…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2137

Published Jun 19, 2009

Memory leak in the Ultra-SPARC T2 crypto provider device driver (aka n2cp) in Sun Solaris 10, and OpenSolaris snv_54 through snv_112, allows context-dependent attackers to cause a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-2136

Published Jun 19, 2009

Unspecified vulnerability in the TCP/IP networking stack in Sun Solaris 10, and OpenSolaris snv_01 through snv_82 and snv_111 through snv_117, when a Cassini GigaSwift Ethernet Ad…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-2135

Published Jun 19, 2009

Multiple race conditions in the Solaris Event Port API in Sun Solaris 10 and OpenSolaris before snv_107 allow local users to cause a denial of service (panic) via unspecified vect…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2029

Published Jun 11, 2009

Unspecified vulnerability in rpc.nisd in Sun Solaris 8 through 10, and OpenSolaris before snv_104, allows remote authenticated users to cause a denial of service (NIS+ daemon hang…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-1933

Published Jun 5, 2009

Kerberos in Sun Solaris 8, 9, and 10, and OpenSolaris before snv_117, does not properly manage credential caches, which allows local users to access Kerberized NFS mount points an…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3870

Published May 26, 2009

Integer overflow in sadmind in Sun Solaris 8 and 9 allows remote attackers to execute arbitrary code via a crafted RPC request that triggers a heap-based buffer overflow, related…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3869

Published May 26, 2009

Heap-based buffer overflow in sadmind in Sun Solaris 8 and 9 allows remote attackers to execute arbitrary code via a crafted RPC request, related to improper decoding of request p…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-1673

Published May 18, 2009

The kernel in Sun Solaris 9 allows local users to cause a denial of service (panic) by calling fstat with a first argument of AT_FDCWD.

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-1478

Published Apr 29, 2009

Multiple unspecified vulnerabilities in the DTrace ioctl handlers in Sun Solaris 10, and OpenSolaris before snv_114, allow local users to cause a denial of service (panic) via unk…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-1276

Published Apr 9, 2009

XScreenSaver in Sun Solaris 10 and OpenSolaris before snv_109, and Solaris 8 and 9 with GNOME 2.0 or 2.0.2, allows physically proximate attackers to obtain sensitive information b…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2009-1207

Published Apr 1, 2009

Race condition in the dircmp script in Sun Solaris 8 through 10, and OpenSolaris snv_01 through snv_111, allows local users to overwrite arbitrary files, probably involving a syml…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0926

Published Mar 17, 2009

Unspecified vulnerability in the UFS filesystem functionality in Sun OpenSolaris snv_86 through snv_91, when running in 32-bit mode on x86 systems, allows local users to cause a d…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0925

Published Mar 17, 2009

Unspecified vulnerability in Sun Solaris 10 on SPARC sun4v systems, and OpenSolaris snv_47 through snv_85, allows local users to cause a denial of service (hang of UFS filesystem…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0924

Published Mar 17, 2009

Unspecified vulnerability in Sun OpenSolaris snv_39 through snv_45, when running in 64-bit mode on x86 architectures, allows local users to cause a denial of service (hang of UFS…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0923

Published Mar 17, 2009

Unspecified vulnerability in Kerberos Incremental Propagation in Solaris 10 and OpenSolaris snv_01 through snv_110 allows remote attackers to cause a denial of service (loss of in…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-0913

Published Mar 16, 2009

Unspecified vulnerability in the keysock kernel module in Solaris 10 and OpenSolaris builds snv_01 through snv_108 allows local users to cause a denial of service (system panic) v…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort
Showing 76-100 of 486 CVEsPage 4 of 20