Vulnerabilities > SUN > Sunos > 5.10

DATE CVE VULNERABILITY TITLE RISK
2007-11-10 CVE-2007-5921 Local Denial of Service vulnerability in Sun Solaris Volume Manager
Unspecified vulnerability in the ioctl interface in the Solaris Volume Manager (SVM) in Sun Solaris 9 and 10 allows local users to cause a denial of service (panic) via unspecified vectors, a different vulnerability than CVE-2004-1346.
local
sun
4.7
2007-10-12 CVE-2007-5422 Configuration vulnerability in SUN Sunos 5.10
Unspecified vulnerability in "Solaris Auditing" in the Basic Security Module (BSM) in Sun Solaris 10, when configured for auditing of networking (nt) events, allows local users to cause a denial of service (panic) via unspecified vectors.
local
low complexity
sun CWE-16
4.9
2007-10-05 CVE-2007-5225 Numeric Errors vulnerability in SUN Sunos 5.10/5.8/5.9
Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local users to read the contents of unspecified memory locations via a negative maximum length value to the I_PEEK ioctl.
local
low complexity
sun CWE-189
4.9
2007-07-12 CVE-2007-3717 Local Security vulnerability in SUN Sunos 5.10/5.8/5.9
rcp on Sun Solaris 8, 9, and 10 before 20070710 does not properly call certain helper applications, which allows local users to gain privileges by creating files with certain names, possibly containing shell metacharacters or spaces, a similar issue to CVE-2006-0225.
local
sun
6.9
2007-06-14 CVE-2007-3223 Denial of Service vulnerability in Sun Solaris NFS Server XDR Handling
Unspecified vulnerability in the NFS server in Sun Solaris 10 before 20070613 allows remote attackers to cause a denial of service (system crash) via certain XDR data in NFS requests, probably related to processing of data by the xdr_bool and xdrmblk_getint32 functions.
network
low complexity
sun
7.8
2007-06-06 CVE-2007-3094 Remote Privilege Escalation vulnerability in Sun Solaris Management Console Authentication Mechanism
Unspecified vulnerability in the authentication mechanism in Solaris Management Console (SMC) on Sun Solaris 8 through 10 before 20070605 allows remote authenticated users to execute arbitrary code via unspecified vectors, related to the WBEM server.
network
low complexity
sun
critical
9.0
2007-06-06 CVE-2007-3093 Remote Privilege Escalation vulnerability in Sun Solaris Management Console Logging Mechanism
Unspecified vulnerability in the logging mechanism in Solaris Management Console (SMC) on Sun Solaris 8 through 10 before 20070605 allows remote attackers to execute arbitrary code via unspecified vectors, related to the WBEM server.
network
low complexity
sun
critical
10.0
2007-05-30 CVE-2007-2882 Denial of Service vulnerability in Sun Solaris NFS Client Module ACL(2) Packets
Unspecified vulnerability in the NFS client module in Sun Solaris 8 through 10 before 20070524, when operating as an NFS server, allows remote attackers to cause a denial of service (crash) via certain Access Control List (acl) packets.
network
low complexity
sun
5.0
2007-05-09 CVE-2007-2529 Local Denial Of Service vulnerability in Sun Solaris ACE_SETACL
Integer signedness error in the acl (facl) system call in Solaris 10 before 20070507 allows local users to cause a denial of service (kernel panic) and possibly gain privileges via a certain argument, related to ACE_SETACL.
local
low complexity
sun
7.2
2006-09-27 CVE-2006-5012 Denial of Service vulnerability in Sun Solaris Syslog
Unspecified vulnerability in Sun Solaris 8, 9, and 10 before 20060925 allows local users to cause a denial of service (disable syslog) and prevent security messages from being logged via unspecified vectors.
local
low complexity
sun
6.6