Vulnerabilities > SUN > Solaris > 9.0

DATE CVE VULNERABILITY TITLE RISK
2007-07-30 CVE-2007-4070 Information Disclosure vulnerability in SUN Solaris 10.0/8.0/9.0
Unspecified vulnerability in Low Bandwidth X proxy (lbxproxy) on Sun Solaris 8 through 10 before 20070725 allows local users to read arbitrary files with root group ownership via unknown vectors.
local
low complexity
sun
4.9
2007-06-28 CVE-2007-3471 Local Buffer Overflow vulnerability in SUN Solaris 10.0/8.0/9.0
Buffer overflow in the dtsession Common Desktop Environment (CDE) Session Manager in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via unspecified vectors.
local
low complexity
sun
7.2
2007-06-27 CVE-2007-3458 Local Denial of Service vulnerability in SUN Solaris 10.0/8.0/9.0
The libsldap library in Sun Solaris 8, 9, and 10 allows local users to cause a denial of service (Name Service Caching Daemon (nscd) crash) via unspecified vectors.
local
low complexity
sun
4.9
2007-06-19 CVE-2007-3283 Local Security vulnerability in SUN Solaris 8.0/9.0
GNOME XScreenSaver in Sun Solaris 8 and 9 before 20070417, when root is logged into the console, does not automatically lock the screen after a session has been inactive, which might allow physically proximate attackers to access the console.
local
low complexity
sun
6.8
2007-06-06 CVE-2007-3094 Remote Privilege Escalation vulnerability in Sun Solaris Management Console Authentication Mechanism
Unspecified vulnerability in the authentication mechanism in Solaris Management Console (SMC) on Sun Solaris 8 through 10 before 20070605 allows remote authenticated users to execute arbitrary code via unspecified vectors, related to the WBEM server.
network
low complexity
sun
critical
9.0
2007-06-06 CVE-2007-3093 Remote Privilege Escalation vulnerability in Sun Solaris Management Console Logging Mechanism
Unspecified vulnerability in the logging mechanism in Solaris Management Console (SMC) on Sun Solaris 8 through 10 before 20070605 allows remote attackers to execute arbitrary code via unspecified vectors, related to the WBEM server.
network
low complexity
sun
critical
10.0
2007-06-01 CVE-2007-2989 Denial of Service vulnerability in SUN Solaris 9.0
The libike library in Sun Solaris 9 before 20070529 contains a logic error related to a certain pointer, which allows remote attackers to cause a denial of service (in.iked daemon crash) by sending certain UDP packets with a source port different from 500.
network
low complexity
sun
7.8
2007-05-30 CVE-2007-2882 Denial of Service vulnerability in Sun Solaris NFS Client Module ACL(2) Packets
Unspecified vulnerability in the NFS client module in Sun Solaris 8 through 10 before 20070524, when operating as an NFS server, allows remote attackers to cause a denial of service (crash) via certain Access Control List (acl) packets.
network
low complexity
sun
5.0
2007-05-02 CVE-2007-2465 Local Denial Of Service vulnerability in Sun Solaris 9 Auditing BSM
Unspecified vulnerability in Sun Solaris 9, when Solaris Auditing (BSM) is enabled for file read, write, attribute modify, create, or delete audit classes, allows local users to cause a denial of service (panic) via unknown vectors, possibly related to the audit_savepath function.
local
sun
4.7
2007-02-23 CVE-2006-7028 Denial-Of-Service vulnerability in Solaris
Single CPU Sun systems running Solaris 7, 8, or 9, such as Netra, allows remote attackers to cause a denial of service (console hang) via a flood of small TCP/IP packets.
network
low complexity
sun
7.8