Vulnerabilities > SUN > Opensolaris > snv.108

DATE CVE VULNERABILITY TITLE RISK
2009-05-22 CVE-2009-1763 Local Code Execution vulnerability in Sun Solaris Secure Digital Slot Driver (sdhost(7D))
Unspecified vulnerability in the Solaris Secure Digital slot driver (aka sdhost) in Sun OpenSolaris snv_105 through snv_108 on the x86 platform allows local users to gain privileges or cause a denial of service (filesystem or memory corruption) via unknown vectors.
local
low complexity
sun
7.2
2009-04-29 CVE-2009-1478 Local Denial of Service vulnerability in SUN Opensolaris and Solaris
Multiple unspecified vulnerabilities in the DTrace ioctl handlers in Sun Solaris 10, and OpenSolaris before snv_114, allow local users to cause a denial of service (panic) via unknown vectors.
local
low complexity
sun
4.9
2009-04-01 CVE-2009-1207 Race Condition vulnerability in SUN Opensolaris and Solaris
Race condition in the dircmp script in Sun Solaris 8 through 10, and OpenSolaris snv_01 through snv_111, allows local users to overwrite arbitrary files, probably involving a symlink attack on temporary files.
local
sun CWE-362
4.4
2009-03-17 CVE-2009-0923 Remote Denial Of Service vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in Kerberos Incremental Propagation in Solaris 10 and OpenSolaris snv_01 through snv_110 allows remote attackers to cause a denial of service (loss of incremental propagation requests to slave KDC servers) via unknown vectors related to the master Key Distribution Center (KDC) server.
network
low complexity
sun
7.8
2009-03-11 CVE-2009-0872 Permissions, Privileges, and Access Controls vulnerability in SUN Opensolaris and Solaris
The NFS server in Sun Solaris 10, and OpenSolaris before snv_111, does not properly implement the AUTH_NONE (aka sec=none) security mode in combination with other security modes, which allows remote attackers to bypass intended access restrictions and read or modify files, as demonstrated by a combination of the AUTH_NONE and AUTH_SYS security modes.
network
sun CWE-264
6.8
2009-03-10 CVE-2009-0870 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
The NFSv4 Server module in the kernel in Sun Solaris 10, and OpenSolaris before snv_111, allow local users to cause a denial of service (infinite loop and system hang) by accessing an hsfs filesystem that is shared through NFSv4, related to the rfs4_op_readdir function.
local
sun CWE-399
4.7