Product:

Solaris

(Sun)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 456
Date Id Summary Products Score Patch Annotated
2005-11-01 CVE-2005-3398 The default configuration of the web server for the Solaris Management Console (SMC) in Solaris 8, 9, and 10 enables the HTTP TRACE method, which could allow remote attackers to obtain sensitive information such as cookies and authentication data from HTTP headers. Solaris, Sunos N/A
2005-10-17 CVE-2005-3250 Unknown vulnerability in Solaris 10 allows local users to cause a denial of service (panic) via unknown vectors related to the "/proc" filesystem, which trigger a null dereference. Solaris N/A
2005-10-14 CVE-2005-3238 Multiple unspecified vulnerabilities in Solaris 10 SCTP Socket Option Processing allows local users to cause a denial of service (panic) via unspecified attack vectors. Solaris N/A
2005-09-28 CVE-2005-3099 Unspecified vulnerability in the (1) Xsun and (2) Xprt commands in Solaris 7, 8, 9, and 10 allows local users to execute arbitrary code. Solaris, Sunos N/A
2005-09-27 CVE-2005-3071 Unspecified vulnerability in Unix File System (UFS) on Solaris 8 and 9, when logging is enabled, allows local users to cause a denial of service ("soft hang") via certain write operations to UFS. Solaris, Sunos N/A
2005-09-20 CVE-2005-3001 Unspecified vulnerability in the "tl" driver in Solaris 10 allows local users to cause a denial of service (panic) via unknown vectors. Solaris N/A
2005-09-08 CVE-2005-2870 Unknown vulnerability in the net-svc script on Solaris 10 allows remote authenticated users to execute arbitrary code on a DHCP client via certain DHCP responses. Solaris N/A
2005-06-29 CVE-2005-2072 The runtime linker (ld.so) in Solaris 8, 9, and 10 trusts the LD_AUDIT environment variable in setuid or setgid programs, which allows local users to gain privileges by (1) modifying LD_AUDIT to reference malicious code and possibly (2) using a long value for LD_AUDIT. Solaris, Sunos N/A
2005-06-29 CVE-2005-2071 traceroute in Sun Solaris 10 on x86 systems allows local users to execute arbitrary code with PRIV_NET_RAWACCESS privileges via (1) a large number of -g arguments or (2) a malformed -s argument with a trailing . (dot). Solaris N/A
2005-06-16 CVE-2005-2032 Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files. Solaris, Sunos N/A