Vulnerabilities > SUN > Solaris > 2.5

DATE CVE VULNERABILITY TITLE RISK
2005-12-31 CVE-2005-4796 Local Arbitrary File Corruption vulnerability in Sun Solaris XView
Unspecified vulnerability in the XView library (libxview.so) in Solaris 2.5 to 10 allows local users to corrupt files via unknown vectors related to the handling of the clipboard selection while an XView application exits.
local
low complexity
sun
3.6
2003-04-02 CVE-2003-0161 The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain conversions from char and int types, which can cause a length check to be disabled when Sendmail misinterprets an input value as a special "NOCHAR" control value, allowing attackers to cause a denial of service and possibly execute arbitrary code via a buffer overflow attack using messages, a different vulnerability than CVE-2002-1337.
network
low complexity
sendmail compaq hp sun
critical
10.0
2001-12-31 CVE-2001-1503 Information Disclosure vulnerability in Solaris in.fingerd
The finger daemon (in.fingerd) in Sun Solaris 2.5 through 8 and SunOS 5.5 through 5.8 allows remote attackers to list all accounts on a host by typing finger 'a b c d e f g h'@host.
local
low complexity
sun
2.1
2001-12-12 CVE-2001-0797 Buffer Overflow vulnerability in Multiple Vendor System V Derived 'login'
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as telnet and rlogin.
network
low complexity
sgi hp ibm sco sun
critical
10.0
2001-08-14 CVE-2001-0565 Buffer Overflow vulnerability in SUN Solaris and Sunos
Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F' command line option.
local
low complexity
sun
4.6
2001-07-05 CVE-2001-1076 Buffer Overflow vulnerability in SUN Solaris and Sunos
Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable.
local
low complexity
sun
7.2
2001-03-12 CVE-2001-0115 Unspecified vulnerability in SUN Solaris and Sunos
Buffer overflow in arp command in Solaris 7 and earlier allows local users to execute arbitrary commands via a long -f parameter.
local
low complexity
sun
7.2
2000-06-14 CVE-2000-0471 Unspecified vulnerability in SUN Solaris and Sunos
Buffer overflow in ufsrestore in Solaris 8 and earlier allows local users to gain root privileges via a long pathname.
local
low complexity
sun
7.2
2000-01-06 CVE-2000-0055 Buffer Overflow vulnerability in SUN Solaris and Sunos
Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n option.
local
low complexity
sun
7.2
1999-12-31 CVE-1999-1588 Buffer Overflow vulnerability in SUN Solaris 2.4/2.5/2.5.1
Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code as root via a long string beginning with "NLPS:002:002:" to the listen (aka System V listener) port, TCP port 2766.
network
low complexity
sun
critical
10.0