Show filters
169 Total Results
Displaying 51-60 of 169
Sort by:
Attacker Value
Unknown

CVE-2007-2465

Disclosure Date: May 02, 2007 (last updated October 04, 2023)
Unspecified vulnerability in Sun Solaris 9, when Solaris Auditing (BSM) is enabled for file read, write, attribute modify, create, or delete audit classes, allows local users to cause a denial of service (panic) via unknown vectors, possibly related to the audit_savepath function.
0
Attacker Value
Unknown

CVE-2006-7028

Disclosure Date: February 23, 2007 (last updated October 04, 2023)
Single CPU Sun systems running Solaris 7, 8, or 9, such as Netra, allows remote attackers to cause a denial of service (console hang) via a flood of small TCP/IP packets. NOTE: this issue has not been replicated by third parties. In addition, the cause is unknown, although it might be related to "jabber" and generation of a large amount of interrupts within the console, or a hardware error.
0
Attacker Value
Unknown

CVE-2007-0895

Disclosure Date: February 13, 2007 (last updated October 04, 2023)
Race condition in recursive directory deletion with the (1) -r or (2) -R option in rm in Solaris 8 through 10 before 20070208 allows local users to delete files and directories as the user running rm by moving a low-level directory to a higher level as it is being deleted, which causes rm to chdir to a ".." directory that is higher than expected, possibly up to the root file system, a related issue to CVE-2002-0435.
0
Attacker Value
Unknown

CVE-2007-0503

Disclosure Date: January 25, 2007 (last updated October 04, 2023)
Unspecified vulnerability in kcms_calibrate in Sun Solaris 8 and 9 before 20071122 allows local users to execute arbitrary commands via unknown vectors.
0
Attacker Value
Unknown

CVE-2007-0470

Disclosure Date: January 24, 2007 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in tip in Sun Solaris 8, 9, and 10 allow local users to gain uucp account privileges via unspecified vectors.
0
Attacker Value
Unknown

CVE-2007-0393

Disclosure Date: January 19, 2007 (last updated October 04, 2023)
Sun Solaris 9 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572.
0
Attacker Value
Unknown

CVE-2007-0165

Disclosure Date: January 10, 2007 (last updated October 04, 2023)
Unspecified vulnerability in libnsl in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (crash) via malformed RPC requests that trigger a crash in rpcbind.
0
Attacker Value
Unknown

CVE-2006-6494

Disclosure Date: December 13, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via a .. (dot dot) sequence in the LANG environment variable that points to a locale file containing attacker-controlled format string specifiers.
0
Attacker Value
Unknown

CVE-2006-6495

Disclosure Date: December 13, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via large precision padding values in a format string specifier in the format parameter of the doprf function. NOTE: this issue normally does not cross privilege boundaries, except in cases of external introduction of malicious message files, or if it is leveraged with other vulnerabilities such as CVE-2006-6494.
0
Attacker Value
Unknown

CVE-2006-6275

Disclosure Date: December 04, 2006 (last updated October 04, 2023)
Race condition in the kernel in Sun Solaris 8 through 10 allows local users to cause a denial of service (panic) via unspecified vectors, possibly related to the exitlwps function and SIGKILL and /proc PCAGENT signals.
0