Vulnerabilities > SUN

DATE CVE VULNERABILITY TITLE RISK
2011-06-14 CVE-2011-0802 Remote Integer Overflow vulnerability in SUN JDK and JRE
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier, 5.0 Update 29 and earlier, and 1.4.2_31 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Sound, a different vulnerability than CVE-2011-0814.
network
low complexity
sun
critical
10.0
2011-06-14 CVE-2011-0788 Remote Java Runtime Environment vulnerability in SUN JDK and JRE
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier, when running on Windows, allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2011-0786.
network
high complexity
sun microsoft
7.6
2011-06-14 CVE-2011-0786 Remote Java Runtime Environment vulnerability in SUN JDK and JRE
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier, when running on Windows, allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2011-0788.
network
high complexity
sun microsoft
7.6
2011-06-09 CVE-2011-2107 Cross-Site Scripting vulnerability in Adobe Acrobat, Acrobat Reader and Flash Player
Cross-site scripting (XSS) vulnerability in Adobe Flash Player before 10.3.181.22 on Windows, Mac OS X, Linux, and Solaris, and 10.3.185.22 and earlier on Android, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a "universal cross-site scripting vulnerability." Per: http://www.adobe.com/support/security/bulletins/apsb11-13.html 'This issue also affects the authplay.dll component that ships with Adobe Reader and Acrobat X (10.0.3) and earlier 10.x and 9.x versions of Adobe Reader and Acrobat for Windows and Macintosh operating systems.' Per: http://www.adobe.com/support/security/bulletins/apsb11-13.html 'We expect to make available an update for Adobe Acrobat X (10.0.3) and earlier 10.x and 9.x versions for Windows and Macintosh, Adobe Reader X (10.0.1) for Windows, Adobe Reader X (10.0.3) for Macintosh, and Adobe Reader 9.4.3 and earlier 9.x versions for Windows and Macintosh with the next quarterly security update for Adobe Reader, currently scheduled for June 14, 2011.
4.3
2011-04-21 CVE-2010-4785 Resource Management Errors vulnerability in IBM Tivoli Directory Server
The do_extendedOp function in ibmslapd in IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.62 (aka 6.0.0.8-TIV-ITDS-IF0004) on Linux, Solaris, and Windows allows remote authenticated users to cause a denial of service (ABEND) via a malformed LDAP extended operation that triggers certain comparisons involving the NULL operation OID.
network
low complexity
ibm linux microsoft sun CWE-399
4.0
2011-04-20 CVE-2011-0841 Remote vulnerability in SUN Sunos 5.11
Unspecified vulnerability in Oracle Solaris 11 Express allows remote attackers to affect availability, related to TCP/IP.
network
low complexity
sun
7.8
2011-04-20 CVE-2011-0839 Local Solaris vulnerability in SUN Sunos 5.10/5.11/5.9
Unspecified vulnerability in Oracle Solaris 9, 10, and 11 Express allows local users to affect availability, related to LOFS.
local
high complexity
sun
3.7
2011-04-20 CVE-2011-0829 Local vulnerability in Oracle Sun Solaris
Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows local users to affect availability, related to Kernel/SPARC.
local
low complexity
sun
4.9
2011-04-20 CVE-2011-0821 Local vulnerability in SUN Sunos 5.10/5.8/5.9
Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows local users to affect confidentiality and integrity via unknown vectors related to uucp.
local
sun
3.0
2011-04-20 CVE-2011-0820 Remote Kernel vulnerability in Oracle Solaris
Unspecified vulnerability in Oracle Solaris 10, and 11 Express allows remote attackers to affect availability via unknown vectors related to Kernel.
network
high complexity
sun
5.4