Show filters
169 Total Results
Displaying 51-60 of 169
Sort by:
Attacker Value
Unknown
CVE-2007-2465
Disclosure Date: May 02, 2007 (last updated October 04, 2023)
Unspecified vulnerability in Sun Solaris 9, when Solaris Auditing (BSM) is enabled for file read, write, attribute modify, create, or delete audit classes, allows local users to cause a denial of service (panic) via unknown vectors, possibly related to the audit_savepath function.
0
Attacker Value
Unknown
CVE-2006-7028
Disclosure Date: February 23, 2007 (last updated October 04, 2023)
Single CPU Sun systems running Solaris 7, 8, or 9, such as Netra, allows remote attackers to cause a denial of service (console hang) via a flood of small TCP/IP packets. NOTE: this issue has not been replicated by third parties. In addition, the cause is unknown, although it might be related to "jabber" and generation of a large amount of interrupts within the console, or a hardware error.
0
Attacker Value
Unknown
CVE-2007-0895
Disclosure Date: February 13, 2007 (last updated October 04, 2023)
Race condition in recursive directory deletion with the (1) -r or (2) -R option in rm in Solaris 8 through 10 before 20070208 allows local users to delete files and directories as the user running rm by moving a low-level directory to a higher level as it is being deleted, which causes rm to chdir to a ".." directory that is higher than expected, possibly up to the root file system, a related issue to CVE-2002-0435.
0
Attacker Value
Unknown
CVE-2007-0503
Disclosure Date: January 25, 2007 (last updated October 04, 2023)
Unspecified vulnerability in kcms_calibrate in Sun Solaris 8 and 9 before 20071122 allows local users to execute arbitrary commands via unknown vectors.
0
Attacker Value
Unknown
CVE-2007-0470
Disclosure Date: January 24, 2007 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in tip in Sun Solaris 8, 9, and 10 allow local users to gain uucp account privileges via unspecified vectors.
0
Attacker Value
Unknown
CVE-2007-0393
Disclosure Date: January 19, 2007 (last updated October 04, 2023)
Sun Solaris 9 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572.
0
Attacker Value
Unknown
CVE-2007-0165
Disclosure Date: January 10, 2007 (last updated October 04, 2023)
Unspecified vulnerability in libnsl in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (crash) via malformed RPC requests that trigger a crash in rpcbind.
0
Attacker Value
Unknown
CVE-2006-6494
Disclosure Date: December 13, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via a .. (dot dot) sequence in the LANG environment variable that points to a locale file containing attacker-controlled format string specifiers.
0
Attacker Value
Unknown
CVE-2006-6495
Disclosure Date: December 13, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via large precision padding values in a format string specifier in the format parameter of the doprf function. NOTE: this issue normally does not cross privilege boundaries, except in cases of external introduction of malicious message files, or if it is leveraged with other vulnerabilities such as CVE-2006-6494.
0
Attacker Value
Unknown
CVE-2006-6275
Disclosure Date: December 04, 2006 (last updated October 04, 2023)
Race condition in the kernel in Sun Solaris 8 through 10 allows local users to cause a denial of service (panic) via unspecified vectors, possibly related to the exitlwps function and SIGKILL and /proc PCAGENT signals.
0