Filtered by vendor Sun Subscriptions
Filtered by product Sunos Subscriptions
Total 609 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-1999-1023 1 Sun 1 Sunos 2018-10-30 N/A
useradd in Solaris 7.0 does not properly interpret certain date formats as specified in the "-e" (expiration date) argument, which could allow users to login after their accounts have expired.
CVE-2002-0084 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long mount argument.
CVE-2002-1345 3 Ncftp Software, Openbsd, Sun 4 Ncftp, Openbsd, Solaris and 1 more 2018-10-30 N/A
Directory traversal vulnerabilities in multiple FTP clients on UNIX systems allow remote malicious FTP servers to create or overwrite files as the client user via filenames containing /absolute/path or .. (dot dot) sequences.
CVE-1999-1014 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument.
CVE-2001-0595 1 Sun 1 Sunos 2018-10-30 N/A
Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_configure program.
CVE-1999-0977 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request.
CVE-1999-0974 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquotad service.
CVE-2002-0573 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Format string vulnerability in RPC wall daemon (rpc.rwalld) for Solaris 2.5.1 through 8 allows remote attackers to execute arbitrary code via format strings in a message that is not properly provided to the syslog function when the wall command cannot be executed.
CVE-2003-1060 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
The NFS Server for Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (UFS panic) via certain invalid UFS requests, which triggers a null dereference.
CVE-2003-1067 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit function in Solaris 2.6 through 9 allow local users to gain root privileges via long arguments to Xsun or other programs that use these functions.
CVE-1999-0973 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when snoop is running in verbose mode.
CVE-1999-0952 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Buffer overflow in Solaris lpstat via class argument allows local users to gain root access.
CVE-1999-0949 3 Sgi, Sun, Turbolinux 4 Irix, Solaris, Sunos and 1 more 2018-10-30 N/A
Buffer overflow in canuum program for Canna input system allows local users to gain root privileges.
CVE-1999-0948 3 Sgi, Sun, Turbolinux 4 Irix, Solaris, Sunos and 1 more 2018-10-30 N/A
Buffer overflow in uum program for Canna input system allows local users to gain root privileges.
CVE-1999-0908 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to panic as a result of recursive calls to mutex_enter.
CVE-1999-0860 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack.
CVE-1999-0859 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Solaris arp allows local users to read files via the -f parameter, which lists lines in the file that do not parse properly.
CVE-1999-0851 3 Ibm, Sco, Sun 4 Aix, Openserver, Unixware and 1 more 2018-10-30 N/A
Denial of service in BIND named via naptr.
CVE-2003-0999 1 Sun 2 Solaris, Sunos 2018-10-30 N/A
Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 may allow attackers to execute arbitrary code or read or write arbitrary files.
CVE-1999-0848 2 Isc, Sun 3 Bind, Solaris, Sunos 2018-10-30 N/A
Denial of service in BIND named via consuming more than "fdmax" file descriptors.