Show filters
569 Total Results
Displaying 231-240 of 569
Sort by:
Attacker Value
Unknown

CVE-2007-2045

Disclosure Date: April 16, 2007 (last updated October 04, 2023)
Unspecified vulnerability in the IP implementation in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (CPU consumption) via crafted IP packets, probably related to fragmented packets with duplicate or missing fragments.
0
Attacker Value
Unknown

CVE-2006-7140

Disclosure Date: March 07, 2007 (last updated October 04, 2023)
The libike library, as used by in.iked, elfsign, and kcfd in Sun Solaris 9 and 10, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents libike from correctly verifying X.509 and other certificates that use PKCS #1, a similar issue to CVE-2006-4339.
0
Attacker Value
Unknown

CVE-2006-7028

Disclosure Date: February 23, 2007 (last updated October 04, 2023)
Single CPU Sun systems running Solaris 7, 8, or 9, such as Netra, allows remote attackers to cause a denial of service (console hang) via a flood of small TCP/IP packets. NOTE: this issue has not been replicated by third parties. In addition, the cause is unknown, although it might be related to "jabber" and generation of a large amount of interrupts within the console, or a hardware error.
0
Attacker Value
Unknown

CVE-2007-0895

Disclosure Date: February 13, 2007 (last updated October 04, 2023)
Race condition in recursive directory deletion with the (1) -r or (2) -R option in rm in Solaris 8 through 10 before 20070208 allows local users to delete files and directories as the user running rm by moving a low-level directory to a higher level as it is being deleted, which causes rm to chdir to a ".." directory that is higher than expected, possibly up to the root file system, a related issue to CVE-2002-0435.
0
Attacker Value
Unknown

CVE-2007-0882

Disclosure Date: February 12, 2007 (last updated February 15, 2024)
Argument injection vulnerability in the telnet daemon (in.telnetd) in Solaris 10 and 11 (SunOS 5.10 and 5.11) misinterprets certain client "-f" sequences as valid requests for the login program to skip authentication, which allows remote attackers to log into certain accounts, as demonstrated by the bin account.
0
Attacker Value
Unknown

CVE-2007-0503

Disclosure Date: January 25, 2007 (last updated October 04, 2023)
Unspecified vulnerability in kcms_calibrate in Sun Solaris 8 and 9 before 20071122 allows local users to execute arbitrary commands via unknown vectors.
0
Attacker Value
Unknown

CVE-2007-0470

Disclosure Date: January 24, 2007 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in tip in Sun Solaris 8, 9, and 10 allow local users to gain uucp account privileges via unspecified vectors.
0
Attacker Value
Unknown

CVE-2007-0165

Disclosure Date: January 10, 2007 (last updated October 04, 2023)
Unspecified vulnerability in libnsl in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (crash) via malformed RPC requests that trigger a crash in rpcbind.
0
Attacker Value
Unknown

CVE-2006-6494

Disclosure Date: December 13, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via a .. (dot dot) sequence in the LANG environment variable that points to a locale file containing attacker-controlled format string specifiers.
0
Attacker Value
Unknown

CVE-2006-6495

Disclosure Date: December 13, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via large precision padding values in a format string specifier in the format parameter of the doprf function. NOTE: this issue normally does not cross privilege boundaries, except in cases of external introduction of malicious message files, or if it is leveraged with other vulnerabilities such as CVE-2006-6494.
0