VendorsOraclesolaris8
Vulnerabilities

Oracle Solaris 8

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

16CVEs
CVE-2002-1337
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.
Published 2004-09-01 · Modified
10.03 PoCEPSS 0.726
CVE-1999-0046
Buffer overflow of rlogin program using TERM environmental variable.
Published 1999-09-29 · Modified
10.01 PoCEPSS 0.519
CVE-2001-0249
Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings.
Published 2001-05-24 · Modified
10.0EPSS 0.197
CVE-2010-3509
Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Scheduler.
Published 2010-10-13 · Modified
10.0EPSS 0.021
CVE-2011-3537
Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows local users to affect availability via unknown vectors related to Kernel/Filesystem.
Published 2011-10-18 · Modified
7.8EPSS 0.018
CVE-2010-3507
Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Live Upgrade.
Published 2010-10-13 · Modified
6.6EPSS 0.003
CVE-2009-2857
The kernel in Sun Solaris 8, 9, and 10, and OpenSolaris before snv_103, does not properly handle interaction between the filesystem and virtual-memory implementations, which allows local users to cause a denial of service (deadlock and system halt) via vectors involving mmap and write operations on the same file.
Published 2009-08-19 · Modified
5.5EPSS 0.003
CVE-2011-3534
Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows remote attackers to affect availability via unknown vectors related to Network Status Monitor (statd).
Published 2011-10-18 · Modified
5.0EPSS 0.023
CVE-2009-3519
Multiple memory leaks in the IP module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_109, allow local users to cause a denial of service (memory consumption) via vectors related to (1) M_DATA, (2) M_PROTO, (3) M_PCPROTO, and (4) M_SIG STREAMS messages.
Published 2009-10-01 · Modified
4.9EPSS 0.004
CVE-2010-2386
Unspecified vulnerability in Oracle Solaris 8, 9, and 10, and OpenSolaris, allows local users to affect availability via unknown vectors related to GigaSwift Ethernet Driver.
Published 2010-07-13 · Modified
4.9EPSS 0.003
CVE-2010-3576
Unspecified vulnerability in Oracle Solaris 8, 9, and 10, and OpenSolaris, allows local users to affect integrity and availability, related to the SCSI enclosure services device driver.
Published 2010-10-14 · Modified
3.6EPSS 0.004
CVE-2010-2382
Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows local users to affect confidentiality and integrity via unknown vectors.
Published 2010-07-13 · Modified
3.21 PoCEPSS 0.007
CVE-2010-2383
Unspecified vulnerability in Oracle Solaris 8, 9, and 10, and OpenSolaris, allows local users to affect confidentiality and integrity, related to NFS.
Published 2010-07-13 · Modified
3.21 PoCEPSS 0.007
CVE-2010-2376
Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows local users to affect confidentiality and integrity via unknown vectors related to Solaris Management Console.
Published 2010-07-13 · Modified
3.2EPSS 0.003
CVE-2004-1349
gzip before 1.3 in Solaris 8, when called with the -f or -force flags, will change the permissions of files that are hard linked to the target files, which allows local users to view or modify these files.
Published 2005-01-19 · Modified
2.1EPSS 0.006
CVE-2010-3542
Unspecified vulnerability in Oracle Solaris 8, 9, and 10, and OpenSolaris, allows local users to affect confidentiality, related to USB.
Published 2010-10-14 · Modified
1.9EPSS 0.004