Vulnerabilities > SUN

DATE CVE VULNERABILITY TITLE RISK
2008-05-06 CVE-2008-2089 Configuration vulnerability in SUN Solaris 10
Unspecified vulnerability in the SCTP protocol implementation in Sun Solaris 10 allows remote attackers to cause a denial of service (panic) via a crafted SCTP packet.
network
low complexity
sun CWE-16
7.8
2008-04-28 CVE-2008-1995 Permissions, Privileges, and Access Controls vulnerability in SUN Java System Directory Server 6.0/6.1/6.2
Sun Java System Directory Proxy Server 6.0, 6.1, and 6.2 classifies a connection using the "bind-dn" criteria, which can cause an incorrect application of policy and allows remote attackers to bypass intended access restrictions for the server.
network
low complexity
sun CWE-264
7.5
2008-04-17 CVE-2007-5747 Numeric Errors vulnerability in SUN Openoffice.Org
Integer underflow in OpenOffice.org before 2.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Quattro Pro (QPRO) file with crafted values that trigger an excessive loop and a stack-based buffer overflow.
network
sun CWE-189
6.8
2008-04-14 CVE-2008-1780 Permissions, Privileges, and Access Controls vulnerability in SUN Solaris 10
Unspecified vulnerability in the labeled networking functionality in Solaris 10 Trusted Extensions allows applications in separate labeling zones to bypass labeling restrictions via unknown vectors.
local
low complexity
sun CWE-264
4.6
2008-04-14 CVE-2008-1779 Resource Management Errors vulnerability in SUN Solaris 10/8/9
Sun Solaris 8, 9, and 10 allows "remote privileged" users to cause a denial of service (panic) via unknown vectors related to self encapsulated IP packets.
network
low complexity
sun CWE-399
6.8
2008-04-14 CVE-2008-1778 Configuration vulnerability in SUN Sunos 5.10/5.9
Unspecified vulnerability in the floating point context switch implementation in Sun Solaris 9 and 10 on x86 platforms might allow local users to cause a denial of service (application exit), corrupt data, or trigger incorrect calculations via unknown vectors.
local
low complexity
sun CWE-16
6.6
2008-04-11 CVE-2008-1756 Local Denial of Service vulnerability in SUN N1 Grid Engine 6.1
Unspecified vulnerability in the Qmaster daemon in Sun N1 Grid Engine 6.1 allows local users to cause a denial of service (daemon crash) via unspecified vectors.
local
low complexity
sun
4.9
2008-04-07 CVE-2008-0709 Permissions, Privileges, and Access Controls vulnerability in HP Select Identity
Multiple unspecified vulnerabilities in HP Select Identity 4.00, 4.01, 4.11, 4.12, 4.13, and 4.20 allow remote authenticated users to access other user accounts via unknown vectors, a different issue than CVE-2008-0214.
network
low complexity
microsoft redhat hp sun CWE-264
5.5
2008-04-06 CVE-2008-1684 Race Condition vulnerability in SUN Solaris 10
inetd on Sun Solaris 10, when debug logging is enabled, allows local users to write to arbitrary files via a symlink attack on the /var/tmp/inetd.log temporary file.
local
sun CWE-362
4.7
2008-03-24 CVE-2008-1480 Remote Denial of Service vulnerability in Sun Solaris 'rpc.metad'
rpc.metad in Sun Solaris 10 allows remote attackers to cause a denial of service (daemon crash) via a malformed RPC request.
network
sun
4.3