Product:

Sunos

(Sun)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 566
Date Id Summary Products Score Patch Annotated
2001-10-09 CVE-2001-1414 The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access, which allows remote attackers to hide their activities, possibly when certain BSM audit files are not present under the FTP root. Solaris, Sunos N/A
2001-06-22 CVE-2001-1328 Buffer overflow in ypbind daemon in Solaris 5.4 through 8 allows remote attackers to execute arbitrary code. Sunos N/A
2001-07-07 CVE-2001-1244 Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process. Freebsd, Hp\-Ux, Vvos, Linux_kernel, Windows_2000, Windows_nt, Netbsd, Openbsd, Sunos N/A
2001-07-05 CVE-2001-1076 Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable. Solaris, Sunos N/A
2001-12-12 CVE-2001-0797 Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as telnet and rlogin. Hp\-Ux, Aix, Openserver, Irix, Solaris, Sunos N/A
2001-09-20 CVE-2001-0699 Buffer overflow in cb_reset in the System Service Processor (SSP) package of SunOS 5.8 allows a local user to execute arbitrary code via a long argument. Sunos N/A
2001-10-30 CVE-2001-0652 Heap overflow in xlock in Solaris 2.6 through 8 allows local users to gain root privileges via a long (1) XFILESEARCHPATH or (2) XUSERFILESEARCHPATH environmental variable. Sunos N/A
2001-08-02 CVE-2001-0595 Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_configure program. Sunos N/A
2001-08-02 CVE-2001-0594 kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument. Solaris, Sunos N/A
2001-08-14 CVE-2001-0565 Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F' command line option. Solaris, Sunos N/A