Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Solaris
(Sun)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 456 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2002-12-27 | CVE-2002-1584 | Unknown vulnerability in the AUTH_DES authentication for RPC in Solaris 2.5.1, 2.6, and 7, SGI IRIX 6.5 to 6.5.19f, and possibly other platforms, allows remote attackers to gain privileges. | Irix, Solaris, Sunos | N/A | ||
2002-12-23 | CVE-2002-1345 | Directory traversal vulnerabilities in multiple FTP clients on UNIX systems allow remote malicious FTP servers to create or overwrite files as the client user via filenames containing /absolute/path or .. (dot dot) sequences. | Ncftp, Openbsd, Solaris, Sunos | N/A | ||
2002-12-11 | CVE-2002-1323 | Safe.pm 2.0.7 and earlier, when used in Perl 5.8.0 and earlier, may allow attackers to break out of safe compartments in (1) Safe::reval or (2) Safe::rdo using a redefined @_ variable, which is not reset between successive calls. | Enterprise_linux, Linux_advanced_workstation, Safe\.pm, Open_unix, Unixware, Irix, Linux, Solaris, Sunos | N/A | ||
2002-12-11 | CVE-2002-1317 | Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query. | Hp\-Ux, Irix, Solaris, Sunos, X11r6 | N/A | ||
2002-12-23 | CVE-2002-1296 | Directory traversal vulnerability in priocntl system call in Solaris does allows local users to execute arbitrary code via ".." sequences in the pc_clname field of a pcinfo_t structure, which cause priocntl to load a malicious kernel module. | Solaris, Sunos | N/A | ||
2002-10-28 | CVE-2002-1228 | Unknown vulnerability in NFS on Solaris 2.5.1 through Solaris 9 allows an NFS client to cause a denial of service by killing the lockd daemon. | Solaris, Sunos | N/A | ||
2002-10-28 | CVE-2002-1199 | The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments. | Openlinux, Openserver, Solaris, Sunos | N/A | ||
2002-08-12 | CVE-2002-0797 | Buffer overflow in the MIB parsing component of mibiisa for Solaris 5.6 through 8 allows remote attackers to gain root privileges. | Solaris, Sunos | N/A | ||
2002-08-12 | CVE-2002-0796 | Format string vulnerability in the logging component of snmpdx for Solaris 5.6 through 8 allows remote attackers to gain root privileges. | Solaris, Sunos | N/A | ||
2002-09-05 | CVE-2002-0679 | Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure. | Openunix, Unixware, Tru64, Hp\-Ux, Aix, Solaris, Sunos, Dextop | N/A |