VendorsSunsunosall versions
Vulnerabilities

Sun Sunos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

609CVEs
CVE-2007-2045
Unspecified vulnerability in the IP implementation in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (CPU consumption) via crafted IP packets, probably related to fragmented packets with duplicate or missing fragments.
Published 2007-04-16 · Modified
5.0EPSS 0.021
CVE-2011-2294
Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows remote attackers to affect availability, related to SSH.
Published 2011-07-21 · Modified
5.0EPSS 0.019
CVE-2011-2298
Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows remote attackers to affect availability, related to KSSL.
Published 2011-07-21 · Modified
5.0EPSS 0.019
CVE-2002-1228
Unknown vulnerability in NFS on Solaris 2.5.1 through Solaris 9 allows an NFS client to cause a denial of service by killing the lockd daemon.
Published 2002-10-21 · Modified
5.0EPSS 0.018
CVE-2002-0085
cachefsd in Solaris 2.6, 7, and 8 allows remote attackers to cause a denial of service (crash) via an invalid procedure call in an RPC request.
Published 2002-03-07 · Modified
5.0EPSS 0.018
CVE-2004-1348
Unknown vulnerability in in.named on Solaris 8 allows remote attackers to cause a denial of service (process crash).
Published 2005-01-19 · Modified
5.0EPSS 0.018
CVE-2012-3124
Unspecified vulnerability in Oracle Sun Solaris 10 allows remote attackers to affect availability, related to Kernel/KSSL.
Published 2012-07-17 · Modified
5.0EPSS 0.017
CVE-2014-6575
Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows remote attackers to affect availability via unknown vectors related to Network, a different vulnerability than CVE-2004-0230.
Published 2015-01-21 · Modified
5.0EPSS 0.017
CVE-1999-0019
Delete or create a file via rpc.statd, due to invalid information.
Published 1999-09-29 · Modified
5.0EPSS 0.017
CVE-2004-1180
Unknown vulnerability in the rwho daemon (rwhod) before 0.17, on little endian architectures, allows remote attackers to cause a denial of service (application crash).
Published 2005-02-11 · Modified
5.0EPSS 0.017
CVE-1999-0211
Extra long export lists over 256 characters in some mount daemons allows NFS directories to be mounted by anyone.
Published 1999-09-29 · Modified
5.0EPSS 0.016
CVE-2005-0447
Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (hang) via a flood of certain ARP packets.
Published 2005-02-15 · Modified
5.0EPSS 0.016
CVE-2003-1069
The Telnet daemon (in.telnetd) for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (CPU consumption by infinite loop).
Published 2005-02-08 · Modified
5.0EPSS 0.016
CVE-2003-1070
Unknown vulnerability in rpcbind for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (rpcbind crash).
Published 2005-02-08 · Modified
5.0EPSS 0.016
CVE-2003-1075
Unknown vulnerability in the FTP server (in.ftpd) for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (temporary FTP server hang), which affects other active mode FTP clients.
Published 2005-02-08 · Modified
5.0EPSS 0.016
CVE-2005-3781
Unspecified vulnerability in in.named in Solaris 9 allows attackers to cause a denial of service via unknown manipulations that cause in.named to "make unnecessary queries."
Published 2005-11-23 · Modified
5.0EPSS 0.016
CVE-2005-0426
Unknown vulnerability in Solaris 8 and 9 allows remote attackers to cause a denial of service (panic) via "Heavy UDP Usage" that triggers a NULL dereference.
Published 2005-02-15 · Modified
5.0EPSS 0.016
CVE-2002-1585
Unknown vulnerability in Solaris 8 for Intel and Solaris 8 and 9 for SPARC allows remote attackers to cause a denial of service via certain packets that cause some network interfaces to stop responding to TCP traffic.
Published 2005-02-08 · Modified
5.0EPSS 0.016
CVE-2003-1060
The NFS Server for Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (UFS panic) via certain invalid UFS requests, which triggers a null dereference.
Published 2005-02-08 · Modified
5.0EPSS 0.016
CVE-2006-3606
Unspecified vulnerability in Sun Solaris X Inter Client Exchange library (libICE) on Solaris 8 and 9 allows context-dependent attackers to cause a denial of service (application crash) to applications that use the library.
Published 2006-07-14 · Modified
5.0EPSS 0.016
CVE-2012-0096
Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows remote attackers to affect availability via unknown vectors related to Network.
Published 2012-01-18 · Modified
5.0EPSS 0.014
CVE-1999-0273
Denial of service through Solaris 2.5.1 telnet by sending ^D characters.
Published 1999-09-29 · Modified
5.0EPSS 0.014
CVE-1999-0054
Sun's ftpd daemon can be subjected to a denial of service.
Published 1999-09-29 · Modified
5.0EPSS 0.014
CVE-1999-0217
Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems.
Published 1999-09-29 · Modified
5.0EPSS 0.013
CVE-1999-0345
Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.
Published 2000-02-04 · Modified
5.0EPSS 0.013
CVE-1999-1258
rpc.pwdauthd in SunOS 4.1.1 and earlier does not properly prevent remote access to the daemon, which allows remote attackers to obtain sensitive system information.
Published 2002-03-09 · Modified
5.0EPSS 0.013
CVE-2013-0408
Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect availability via vectors related to CPU performance counters drivers.
Published 2013-04-17 · Modified
5.0EPSS 0.013
CVE-2005-1591
Unknown vulnerability in NIS+ on Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (rpc.nisd disabled and NIS+ unavailable) via unknown vectors.
Published 2005-05-16 · Modified
5.0EPSS 0.012
CVE-2000-0030
Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database.
Published 2000-07-12 · Modified
5.0EPSS 0.010
CVE-2007-5225
Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local users to read the contents of unspecified memory locations via a negative maximum length value to the I_PEEK ioctl.
Published 2007-10-05 · Modified
4.91 PoCEPSS 0.010
CVE-2013-5862
Unspecified vulnerability in Oracle Solaris 10 and 11.1 allows local users to affect availability via vectors related to CPU performance counters (CPC) drivers, a different vulnerability than CVE-2014-4215.
Published 2013-10-16 · Modified
4.9EPSS 0.004
CVE-2013-5864
Unspecified vulnerability in Oracle Solaris 10 and 11.1 allows local users to affect availability via vectors related to USB hub driver.
Published 2013-10-16 · Modified
4.9EPSS 0.004
CVE-2013-5876
Unspecified vulnerability in Oracle Solaris 10 and 11.1 allows local users to affect availability via unknown vectors related to Kernel, a different vulnerability than CVE-2014-0447.
Published 2014-01-15 · Modified
4.9EPSS 0.004
CVE-2012-3207
Unspecified vulnerability in Oracle Sun Solaris 9, 10, and 11 allows local users to affect availability via unknown vectors related to Kernel.
Published 2012-10-17 · Modified
4.9EPSS 0.004
CVE-2014-4224
Unspecified vulnerability in Oracle Sun Solaris 8, 9, 10, and 11.1 allows local users to affect availability via unknown vectors related to sockfs.
Published 2014-07-17 · Modified
4.9EPSS 0.004
CVE-2014-4215
Unspecified vulnerability in Oracle Solaris 10 and 11.1 allows local users to affect availability via vectors related to CPU performance counters (CPC) drivers, a different vulnerability than CVE-2013-5862.
Published 2014-07-17 · Modified
4.9EPSS 0.004
CVE-2013-3765
Unspecified vulnerability in Oracle Solaris 11 allows local users to affect availability via unknown vectors related to Kernel/VM.
Published 2013-07-17 · Modified
4.9EPSS 0.004
CVE-2012-1692
Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect availability, related to SCTP.
Published 2012-05-03 · Modified
4.9EPSS 0.004
CVE-2014-4275
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via vectors related to SMB server kernel module.
Published 2014-10-15 · Modified
4.9EPSS 0.004
CVE-2013-3799
Unspecified vulnerability in Oracle Solaris 10 and 11, when running on AMD64, allows local users to affect availability via unknown vectors related to Kernel.
Published 2013-07-17 · Modified
4.9EPSS 0.004
← Prev10 / 16Next →