Vulnerabilities > SUN > Solaris > 7.0

DATE CVE VULNERABILITY TITLE RISK
2003-08-27 CVE-2003-0669 Denial-Of-Service vulnerability in Solaris
Unknown vulnerability in Solaris 2.6 through 9 causes a denial of service (system panic) via "a rare race condition" or an attack by local users.
local
high complexity
sun
1.2
2003-08-27 CVE-2003-0609 Unspecified vulnerability in SUN Solaris and Sunos
Stack-based buffer overflow in the runtime linker, ld.so.1, on Solaris 2.6 through 9 allows local users to gain root privileges via a long LD_PRELOAD environment variable.
local
low complexity
sun
7.2
2003-08-20 CVE-2003-1063 Unspecified vulnerability in SUN Solaris and Sunos
The patches (1) 105693-13, (2) 108800-02, (3) 105694-13, and (4) 108801-02 for cachefs on Solaris 2.6 and 7 overwrite the inetd.conf file, which may silently reenable services and allow remote attackers to bypass the intended security policy.
network
low complexity
sun
7.5
2003-06-19 CVE-2003-1067 Local Security vulnerability in RETIRED: Oracle Solaris
Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit function in Solaris 2.6 through 9 allow local users to gain root privileges via long arguments to Xsun or other programs that use these functions.
local
low complexity
sun
7.2
2003-06-06 CVE-2003-1068 Buffer Overflow vulnerability in SUN Solaris and Sunos
Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4659277, a different vulnerability than CVE-2003-1082.
local
low complexity
sun
7.2
2003-06-03 CVE-2003-1069 Remote Denial Of Service vulnerability in Sun Solaris Telnet Daemon
The Telnet daemon (in.telnetd) for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (CPU consumption by infinite loop).
network
low complexity
sun
5.0
2003-05-05 CVE-2003-0201 Remote Buffer Overflow vulnerability in Samba 'call_trans2open'
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.
network
low complexity
samba samba-tng apple compaq hp sun
critical
10.0
2003-05-05 CVE-2003-0196 Multiple buffer overflows in Samba before 2.2.8a may allow remote attackers to execute arbitrary code or cause a denial of service, as discovered by the Samba team and a different vulnerability than CVE-2003-0201.
network
low complexity
samba samba-tng compaq hp sun
critical
10.0
2003-04-28 CVE-2003-1070 Denial of Service vulnerability in Sun Solaris RPCbind
Unknown vulnerability in rpcbind for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (rpcbind crash).
network
low complexity
sun
5.0
2003-04-02 CVE-2003-0161 The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain conversions from char and int types, which can cause a length check to be disabled when Sendmail misinterprets an input value as a special "NOCHAR" control value, allowing attackers to cause a denial of service and possibly execute arbitrary code via a buffer overflow attack using messages, a different vulnerability than CVE-2002-1337.
network
low complexity
sendmail compaq hp sun
critical
10.0