VendorsSunsolarisall versions
Vulnerabilities

Sun Solaris

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

545CVEs
CVE-1999-0109
Buffer overflow in ffbconfig in Solaris 2.5.1.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.008
CVE-2000-0118
The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to conduct brute force password guessing.
Published 2000-02-08 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0301
Buffer overflow in SunOS/Solaris ps command.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.008
CVE-2008-4131
Multiple unspecified vulnerabilities in Sun Solaris 8 through 10 allow local users to gain privileges via vectors related to handling of tags with (1) the -t option and (2) the :tag command in the (a) vi, (b) ex, (c) vedit, (d) view, and (e) edit programs.
Published 2008-09-19 · Modified
7.21 PoCEPSS 0.008
CVE-2009-3692
Unspecified vulnerability in the VBoxNetAdpCtl configuration tool in Sun VirtualBox 3.0.x before 3.0.8 on Solaris x86, Linux, and Mac OS X allows local users to gain privileges via unknown vectors.
Published 2009-10-13 · Modified
7.21 PoCEPSS 0.007
CVE-1999-0773
Buffer overflow in Solaris lpset program allows local users to gain root access.
Published 2000-04-18 · Modified
7.21 PoCEPSS 0.007
CVE-1999-0949
Buffer overflow in canuum program for Canna input system allows local users to gain root privileges.
Published 2000-02-04 · Modified
7.21 PoCEPSS 0.007
CVE-1999-0948
Buffer overflow in uum program for Canna input system allows local users to gain root privileges.
Published 2000-02-04 · Modified
7.21 PoCEPSS 0.007
CVE-2002-1296
Directory traversal vulnerability in priocntl system call in Solaris does allows local users to execute arbitrary code via ".." sequences in the pc_clname field of a pcinfo_t structure, which cause priocntl to load a malicious kernel module.
Published 2004-09-01 · Modified
7.2EPSS 0.006
CVE-1999-0318
Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.
Published 2000-01-04 · Modified
7.2EPSS 0.006
CVE-2008-2710
Integer signedness error in the ip_set_srcfilter function in the IP Multicast Filter in uts/common/inet/ip/ip_multi.c in the kernel in Sun Solaris 10 and OpenSolaris before snv_92 allows local users to execute arbitrary code in other Solaris Zones via an SIOCSIPMSFILTER IOCTL request with a large value of the imsf->imsf_numsrc field, which triggers an out-of-bounds write of kernel memory. NOTE: this was reported as an integer overflow, but the root cause involves the bypass of a signed comparison.
Published 2008-06-16 · Modified
7.2EPSS 0.006
CVE-2002-0090
Buffer overflow in Low BandWidth X proxy (lbxproxy) in Solaris 8 allows local users to execute arbitrary code via a long display command line option.
Published 2004-09-01 · Modified
7.2EPSS 0.005
CVE-2004-0780
Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line argument.
Published 2006-01-10 · Modified
7.2EPSS 0.005
CVE-2004-1352
Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbitrary code.
Published 2005-01-19 · Modified
7.2EPSS 0.005
CVE-2006-4319
Buffer overflow in the format command in Solaris 8, 9, and 10 allows local users with access to format (such as the "File System Management" RBAC profile) to execute arbitrary code via unknown vectors, a different vulnerability than CVE-2006-4307.
Published 2006-08-24 · Modified
7.2EPSS 0.005
CVE-2007-3471
Buffer overflow in the dtsession Common Desktop Environment (CDE) Session Manager in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via unspecified vectors.
Published 2007-06-28 · Modified
7.2EPSS 0.005
CVE-2002-1980
Buffer overflow in Volume Manager daemon (vold) of Sun Solaris 2.5.1 through 8 allows local users to execute arbitrary code via unknown attack vectors.
Published 2005-06-28 · Modified
7.2EPSS 0.005
CVE-1999-0055
Buffer overflows in Sun libnsl allow root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-2006-0901
Unspecified vulnerability in the hsfs filesystem in Solaris 8, 9, and 10 allows unspecified attackers to cause a denial of service (panic) or execute arbitrary code.
Published 2006-02-27 · Modified
7.2EPSS 0.004
CVE-1999-0982
The Sun Web-Based Enterprise Management (WBEM) installation script stores a password in plaintext in a world readable file.
Published 2000-01-04 · Modified
7.2EPSS 0.004
CVE-2006-4306
Unspecified vulnerability in Sun Solaris 8 and 9 before 20060821 allows local users to execute arbitrary commands via unspecified vectors, involving the default Role-Based Access Control (RBAC) settings in the "File System Management" profile.
Published 2006-08-23 · Modified
7.2EPSS 0.004
CVE-2004-1767
The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel modules (LKM), possibly involving the modload function.
Published 2005-03-10 · Modified
7.2EPSS 0.004
CVE-2009-3390
Multiple unspecified vulnerabilities in the (1) iscsiadm and (2) iscsitadm programs in Sun Solaris 10, and OpenSolaris snv_28 through snv_109, allow local users with certain RBAC execution profiles to gain privileges via unknown vectors related to the libima library.
Published 2009-09-24 · Modified
7.2EPSS 0.004
CVE-2003-1057
Unknown vulnerability in CDE Print Viewer (dtprintinfo) for Sun Solaris 2.6 through 9 may allow local users to execute arbitrary code.
Published 2005-02-08 · Modified
7.2EPSS 0.004
CVE-2005-0816
Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges.
Published 2005-03-20 · Modified
7.2EPSS 0.004
CVE-2003-1082
Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4705891, a different vulnerability than CVE-2003-1068.
Published 2005-02-08 · Modified
7.2EPSS 0.004
CVE-2003-0091
Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local users to gain root privilege.
Published 2003-04-01 · Modified
7.2EPSS 0.004
CVE-1999-0334
In Solaris 2.2 and 2.3, when fsck fails on startup, it allows a local user with physical access to obtain root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-1419
Buffer overflow in nss_nisplus.so.1 library in NIS+ in Solaris 2.3 and 2.4 allows local users to gain root privileges.
Published 2002-03-09 · Modified
7.2EPSS 0.004
CVE-2003-1067
Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit function in Solaris 2.6 through 9 allow local users to gain root privileges via long arguments to Xsun or other programs that use these functions.
Published 2005-02-08 · Modified
7.2EPSS 0.004
CVE-2002-0089
Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via long arguments to (1) the -d command line option, or (2) the PRODVERS argument in the .cdtoc file.
Published 2002-03-07 · Modified
7.2EPSS 0.004
CVE-1999-0135
admintool in Solaris allows a local user to write to arbitrary files and gain root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-0339
Buffer overflow in the libauth library in Solaris allows local users to gain additional privileges, possibly root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-2003-0999
Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 may allow attackers to execute arbitrary code or read or write arbitrary files.
Published 2003-12-17 · Modified
7.2EPSS 0.004
CVE-2004-0496
Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access kernel memory, a different set of vulnerabilities than those identified in CVE-2004-0495, as found by the Sparse source code checking tool.
Published 2004-07-06 · Modified
7.2EPSS 0.004
CVE-2003-1068
Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4659277, a different vulnerability than CVE-2003-1082.
Published 2005-02-08 · Modified
7.2EPSS 0.004
CVE-2003-0092
Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.
Published 2003-04-01 · Modified
7.2EPSS 0.004
CVE-2001-0190
Buffer overflow in /usr/bin/cu in Solaris 2.8 and earlier, and possibly other operating systems, allows local users to gain privileges by executing cu with a long program name (arg0).
Published 2001-05-07 · Modified
7.2EPSS 0.004
CVE-2002-0088
Buffer overflow in admintool in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long media installation path.
Published 2002-03-07 · Modified
7.2EPSS 0.004
CVE-2001-0124
Buffer overflow in exrecover in Solaris 2.6 and earlier possibly allows local users to gain privileges via a long command line argument.
Published 2001-05-07 · Modified
7.2EPSS 0.004
← Prev6 / 14Next →