Show filters
51 Total Results
Displaying 31-40 of 51
Sort by:
Attacker Value
Unknown
CVE-2009-1207
Disclosure Date: April 01, 2009 (last updated October 04, 2023)
Race condition in the dircmp script in Sun Solaris 8 through 10, and OpenSolaris snv_01 through snv_111, allows local users to overwrite arbitrary files, probably involving a symlink attack on temporary files.
0
Attacker Value
Unknown
CVE-2009-0923
Disclosure Date: March 17, 2009 (last updated October 04, 2023)
Unspecified vulnerability in Kerberos Incremental Propagation in Solaris 10 and OpenSolaris snv_01 through snv_110 allows remote attackers to cause a denial of service (loss of incremental propagation requests to slave KDC servers) via unknown vectors related to the master Key Distribution Center (KDC) server.
0
Attacker Value
Unknown
CVE-2009-0913
Disclosure Date: March 16, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the keysock kernel module in Solaris 10 and OpenSolaris builds snv_01 through snv_108 allows local users to cause a denial of service (system panic) via unknown vectors related to PF_KEY socket, probably related to setting socket options.
0
Attacker Value
Unknown
CVE-2009-0872
Disclosure Date: March 11, 2009 (last updated October 04, 2023)
The NFS server in Sun Solaris 10, and OpenSolaris before snv_111, does not properly implement the AUTH_NONE (aka sec=none) security mode in combination with other security modes, which allows remote attackers to bypass intended access restrictions and read or modify files, as demonstrated by a combination of the AUTH_NONE and AUTH_SYS security modes.
0
Attacker Value
Unknown
CVE-2009-0873
Disclosure Date: March 11, 2009 (last updated October 04, 2023)
The NFS daemon (aka nfsd) in Sun Solaris 10 and OpenSolaris before snv_106, when NFSv3 is used, does not properly implement combinations of security modes, which allows remote attackers to bypass intended access restrictions and read or modify files, as demonstrated by a combination of the sec=sys and sec=krb5 security modes, related to modes that "override each other."
0
Attacker Value
Unknown
CVE-2009-0870
Disclosure Date: March 10, 2009 (last updated October 04, 2023)
The NFSv4 Server module in the kernel in Sun Solaris 10, and OpenSolaris before snv_111, allow local users to cause a denial of service (infinite loop and system hang) by accessing an hsfs filesystem that is shared through NFSv4, related to the rfs4_op_readdir function.
0
Attacker Value
Unknown
CVE-2009-0838
Disclosure Date: March 06, 2009 (last updated October 04, 2023)
The crypto pseudo device driver in Sun Solaris 10, and OpenSolaris snv_88 through snv_102, does not properly free memory, which allows local users to cause a denial of service (panic) via unspecified vectors, related to the vmem_hash_delete function.
0
Attacker Value
Unknown
CVE-2009-0477
Disclosure Date: February 08, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the process (aka proc) filesystem in Sun OpenSolaris snv_85 through snv_100 allows local users to gain privileges via vectors related to the contract filesystem.
0
Attacker Value
Unknown
CVE-2009-0319
Disclosure Date: January 28, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the autofs module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_108, allows local users to cause a denial of service (autofs mount outage) or possibly gain privileges via vectors related to "xdr processing problems."
0
Attacker Value
Unknown
CVE-2009-0304
Disclosure Date: January 27, 2009 (last updated October 04, 2023)
The kernel in Sun Solaris 10 and 11 snv_101b, and OpenSolaris before snv_108, allows remote attackers to cause a denial of service (system crash) via a crafted IPv6 packet, related to an "insufficient validation security vulnerability," as demonstrated by SunOSipv6.c.
0