| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket. |
| Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspend has completed, which allows an attacker with physical access to input characters to the last active application from the keyboard for a short period after the system is restoring, which could lead to increased privileges. |
| Vulnerability in /bin/mail in SunOS 4.1.1 and earlier allows local users to gain root privileges via certain command line arguments. |
| SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device. |
| rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable. |
| Sun SunOS 4.1 through 4.1.3 allows local attackers to gain root access via insecure permissions on files and directories such as crash. |
| Solaris rpc.mountd generates error messages that allow a remote attacker to determine what files are on the server. |
| pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call. |
| Denial of service in BIND named via consuming more than "fdmax" file descriptors. |
| Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type. |
| Extra long export lists over 256 characters in some mount daemons allows NFS directories to be mounted by anyone. |
| Buffer overflow in CDE dtmail and dtmailpr programs allows local users to gain privileges via a long -f option. |
| Denial of service in BIND by improperly closing TCP sessions via so_linger. |
| Automount daemon automountd allows local or remote users to gain privileges via shell metacharacters. |
| Solaris ufsrestore buffer overflow. |
| Local user gains root privileges via buffer overflow in rdist, via expstr() function. |
| Denial of service in BIND named via malformed SIG records. |
| Buffer overflow in BIND 8.2 via NXT records. |
| The SunView (SunTools) selection_svc facility allows remote users to read files. |
| Buffer overflow in Solaris kcms_configure via a long NETPATH environmental variable. |