Vulnerabilities > SUN > Opensolaris > build.snv.02

DATE CVE VULNERABILITY TITLE RISK
2008-09-02 CVE-2008-3875 Permissions, Privileges, and Access Controls vulnerability in SUN Opensolaris and Solaris
The kernel in Sun Solaris 8 through 10 and OpenSolaris before snv_90 allows local users to bypass chroot, zones, and the Solaris Trusted Extensions multi-level security policy, and establish a covert communication channel, via unspecified vectors involving system calls.
local
low complexity
sun CWE-264
7.2
2008-08-08 CVE-2008-0965 USE of Externally-Controlled Format String vulnerability in SUN Opensolaris, Solaris and Sunos
Multiple format string vulnerabilities in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via format string specifiers in an SMB packet.
network
sun CWE-134
critical
9.3
2008-08-08 CVE-2008-0964 Buffer Errors vulnerability in SUN Opensolaris, Solaris and Sunos
Multiple stack-based buffer overflows in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via a crafted SMB packet.
network
sun CWE-119
critical
9.3
2008-08-07 CVE-2008-3549 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in the pthread_mutex_reltimedlock_np API in Sun Solaris 10 and OpenSolaris before snv_90 allows local users to cause a denial of service (system hang or panic) via unknown vectors.
local
sun CWE-399
4.7