Vulnerabilities > SUN > Opensolaris > snv.75

DATE CVE VULNERABILITY TITLE RISK
2009-08-28 CVE-2009-3000 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
The sockfs module in the kernel in Sun Solaris 10 and OpenSolaris snv_41 through snv_122, when Network Cache Accelerator (NCA) logging is enabled, allows remote attackers to cause a denial of service (panic) via unspecified web-server traffic that triggers a NULL pointer dereference in the nl7c_http_log function, related to "improper http response handling."
network
sun CWE-399
7.1
2009-08-21 CVE-2009-2912 Local Denial Of Service vulnerability in SUN Opensolaris and Solaris
The (1) sendfile and (2) sendfilev functions in Sun Solaris 8 through 10, and OpenSolaris before snv_110, allow local users to cause a denial of service (panic) via vectors related to vnode function calls.
local
low complexity
sun
4.9
2009-08-07 CVE-2009-2711 Information Exposure vulnerability in multiple products
XScreenSaver in Sun Solaris 9 and 10, OpenSolaris before snv_120, and X11 6.4.1 for Solaris 8, when the Xorg or Xnewt server is used, allows physically proximate attackers to obtain sensitive information by reading popup windows, which are displayed even when the screen is locked, a different vulnerability than CVE-2009-1276.
local
low complexity
sun x-org CWE-200
4.9
2009-08-03 CVE-2009-2652 Remote Denial of Service vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in Solaris Trusted Extensions in Sun Solaris 10, and OpenSolaris snv_37 through snv_120, allows remote attackers to cause a denial of service (panic) via vectors involving the parsing of labeled packets.
network
low complexity
sun
6.8
2009-07-29 CVE-2009-2644 Race Condition vulnerability in SUN Opensolaris and Solaris
Race condition in the Solaris Auditing subsystem in Sun Solaris 9 and 10 and OpenSolaris before snv_121, when extended file attributes are used, allows local users to cause a denial of service (panic) via vectors related to "pathnames for invalid fds."
local
low complexity
sun CWE-362
4.9
2009-07-27 CVE-2009-2596 Local Denial Of Service vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in the Solaris Auditing subsystem in Sun Solaris 9 and 10 and OpenSolaris before snv_121, when extended file attributes are used, allows local users to cause a denial of service (panic) via vectors related to fad_aupath structure members.
local
sun
4.7
2009-07-16 CVE-2009-2487 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
Use-after-free vulnerability in the frpr_icmp function in the ipfilter (aka IP Filter) subsystem in Sun Solaris 10, and OpenSolaris snv_45 through snv_110, allows remote attackers to cause a denial of service (panic) via unspecified vectors.
network
low complexity
sun CWE-399
7.8
2009-07-16 CVE-2009-2486 Unspecified vulnerability in SUN Opensolaris and Solaris
Unspecified vulnerability in the SCTP implementation in Sun Solaris 10, and OpenSolaris before snv_120, allows remote attackers to cause a denial of service (panic) via unspecified packets.
network
low complexity
sun
7.8
2009-07-02 CVE-2009-2296 Unspecified vulnerability in SUN Opensolaris and Solaris
The NFSv4 server kernel module in Sun Solaris 10, and OpenSolaris before snv_119, does not properly implement the nfs_portmon setting, which allows remote attackers to access shares, and read, create, and modify arbitrary files, via unspecified vectors.
network
low complexity
sun
critical
10.0
2009-06-25 CVE-2009-2187 Resource Management Errors vulnerability in SUN Opensolaris and Solaris
Multiple memory leaks in the (1) IP and (2) IPv6 multicast implementation in the kernel in Sun Solaris 10, and OpenSolaris snv_67 through snv_93, allow local users to cause a denial of service (memory consumption) via vectors related to the association of (a) DL_ENABMULTI_REQ and (b) DL_DISABMULTI_REQ messages with ARP messages.
local
low complexity
sun CWE-399
4.9