VendorsSunsolaris2.4
Vulnerabilities

Sun Solaris 2.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

48CVEs
CVE-1999-0125
Buffer overflow in SGI IRIX mailx program.
Published 1999-09-29 · Modified
4.62 PoCEPSS 0.011
CVE-1999-1413
Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users to overwrite or create files at higher privileges by causing a core dump, e.g. through dmesg.
Published 2001-09-12 · Modified
4.61 PoCEPSS 0.007
CVE-1999-0129
Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
Published 1999-09-29 · Modified
4.6EPSS 0.006
CVE-1999-0786
The dynamic linker in Solaris allows a local user to create arbitrary files via the LD_PROFILE environmental variable and a symlink attack.
Published 2000-03-22 · Modified
4.61 PoCEPSS 0.006
CVE-1999-0303
Buffer overflow in BNU UUCP daemon (uucpd) through long hostnames.
Published 1999-09-29 · Modified
4.6EPSS 0.003
CVE-1999-0370
In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files.
Published 2000-02-04 · Modified
4.6EPSS 0.003
CVE-1999-1423
ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicast address through the loopback interface, e.g. via ping -i.
Published 2002-03-09 · Modified
2.11 PoCEPSS 0.009
CVE-1999-0132
Expreserve, as used in vi and ex, allows local users to overwrite arbitrary files and gain root access.
Published 1999-09-29 · Modified
2.1EPSS 0.005
← Prev2 / 2