Vulnerabilities > SUN

DATE CVE VULNERABILITY TITLE RISK
1999-12-31 CVE-1999-1587 Local Information Disclosure vulnerability in Sun Solaris UCB/PS Command
/usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users to view the environment variables and values of arbitrary processes via the -e option.
local
low complexity
sun
2.1
1999-12-31 CVE-1999-1586 Unspecified vulnerability in SUN Sunos
loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vulnerability than CVE-1999-1584.
local
low complexity
sun
7.2
1999-12-31 CVE-1999-1585 Unspecified vulnerability in SUN Sunos 5.0
The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the system is booting, which allows attackers with physical access to gain root privileges.
local
low complexity
sun
7.2
1999-12-31 CVE-1999-1584 Unspecified vulnerability in SUN Openwindows and Sunos
Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root privileges via environment variables, a different vulnerability than CVE-1999-1586.
network
low complexity
sun
critical
10.0
1999-12-31 CVE-1999-1102 lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times.
local
low complexity
sgi apple bsd sun
2.1
1999-12-22 CVE-2000-0032 Unspecified vulnerability in SUN Solaris and Sunos
Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database.
network
low complexity
sun
critical
10.0
1999-12-22 CVE-2000-0030 Unspecified vulnerability in SUN Solaris and Sunos
Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database.
network
low complexity
sun
5.0
1999-12-10 CVE-1999-0977 Authentication vulnerability in Solaris sadmind Disabled
Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request.
network
low complexity
sun
critical
10.0
1999-12-09 CVE-1999-0974 Unspecified vulnerability in SUN Solaris and Sunos
Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquotad service.
network
low complexity
sun
critical
10.0
1999-12-07 CVE-1999-0973 Unspecified vulnerability in SUN Solaris and Sunos
Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when snoop is running in verbose mode.
network
low complexity
sun
critical
10.0