← Back

Solaris

solaris

Vendor: Sun • 450 CVEs

CVEs (450)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Sun
1Solaris
Apr 16, 2026
Dec 31, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Unspecified vulnerability in Process File System (procfs) in Sun Solaris 10 allows local users to obtain sensitive information such as process working directories via unknown attack vectors, possibly pwdx.
1Sun
1Solaris
Apr 16, 2026
Dec 9, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Sun Update Connection in Sun Solaris 10, when configured to use a web proxy, allows local users to obtain the proxy authentication password via (1) an unspecified vector and (2) proxy log files.
1Sun
2Solaris
Sunos
Apr 16, 2026
Nov 23, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in in.named in Solaris 9 allows attackers to cause a denial of service via unknown manipulations that cause in.named to "make unnecessary queries."
1Sun
1Solaris
Apr 16, 2026
Nov 18, 2005
N/A· v4
N/A· v3
7.8 HIGH· v2
The Internet Key Exchange version 1 (IKEv1) implementation in the libike library in Sun Solaris 9 and 10 allows remote attackers to cause a denial of service (in.iked crash) via certain crafted IKE packets, as demonstrat...Show more
The Internet Key Exchange version 1 (IKEv1) implementation in the libike library in Sun Solaris 9 and 10 allows remote attackers to cause a denial of service (in.iked crash) via certain crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.Show less
1Sun
2Solaris
Sunos
Apr 16, 2026
Nov 1, 2005
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The default configuration of the web server for the Solaris Management Console (SMC) in Solaris 8, 9, and 10 enables the HTTP TRACE method, which could allow remote attackers to obtain sensitive information such as cooki...Show more
The default configuration of the web server for the Solaris Management Console (SMC) in Solaris 8, 9, and 10 enables the HTTP TRACE method, which could allow remote attackers to obtain sensitive information such as cookies and authentication data from HTTP headers.Show less
1Sun
1Solaris
Apr 16, 2026
Oct 17, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Unknown vulnerability in Solaris 10 allows local users to cause a denial of service (panic) via unknown vectors related to the "/proc" filesystem, which trigger a null dereference.
1Sun
2Solaris
Sunos
Apr 16, 2026
Sep 28, 2005
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Unspecified vulnerability in the (1) Xsun and (2) Xprt commands in Solaris 7, 8, 9, and 10 allows local users to execute arbitrary code.
1Sun
2Solaris
Sunos
Apr 16, 2026
Sep 27, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Unspecified vulnerability in Unix File System (UFS) on Solaris 8 and 9, when logging is enabled, allows local users to cause a denial of service ("soft hang") via certain write operations to UFS.
1Sun
1Solaris
Apr 16, 2026
Sep 20, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Unspecified vulnerability in the "tl" driver in Solaris 10 allows local users to cause a denial of service (panic) via unknown vectors.
1Sun
1Solaris
Apr 16, 2026
Sep 8, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Unknown vulnerability in the net-svc script on Solaris 10 allows remote authenticated users to execute arbitrary code on a DHCP client via certain DHCP responses.
1Sun
2Solaris
Sunos
Apr 16, 2026
Jun 29, 2005
N/A· v4
N/A· v3
7.2 HIGH· v2
The runtime linker (ld.so) in Solaris 8, 9, and 10 trusts the LD_AUDIT environment variable in setuid or setgid programs, which allows local users to gain privileges by (1) modifying LD_AUDIT to reference malicious code...Show more
The runtime linker (ld.so) in Solaris 8, 9, and 10 trusts the LD_AUDIT environment variable in setuid or setgid programs, which allows local users to gain privileges by (1) modifying LD_AUDIT to reference malicious code and possibly (2) using a long value for LD_AUDIT.Show less
1Sun
1Solaris
Apr 16, 2026
Jun 29, 2005
N/A· v4
N/A· v3
4.6 MEDIUM· v2
traceroute in Sun Solaris 10 on x86 systems allows local users to execute arbitrary code with PRIV_NET_RAWACCESS privileges via (1) a large number of -g arguments or (2) a malformed -s argument with a trailing . (dot).
1Sun
2Solaris
Sunos
Apr 16, 2026
Jun 16, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files.
1Sun
1Solaris
Apr 16, 2026
Jun 9, 2005
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Unknown vulnerability in the Sun Solaris C library (libc and libproject) in Solaris 10 allows local users to gain privileges.
1Sun
2Solaris
Sunos
Apr 16, 2026
May 16, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unknown vulnerability in NIS+ on Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (rpc.nisd disabled and NIS+ unavailable) via unknown vectors.
1Sun
2Solaris
Sunos
Apr 16, 2026
May 11, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Unknown vulnerability in Solaris 7 through 9, when using Federated Naming Services (FNS), autofs, and FNS X.500 configuration, allows local users to cause a denial of service (automountd crash) when "accessing" /xfn/_x50...Show more
Unknown vulnerability in Solaris 7 through 9, when using Federated Naming Services (FNS), autofs, and FNS X.500 configuration, allows local users to cause a denial of service (automountd crash) when "accessing" /xfn/_x500.Show less
1Sun
2Solaris
Sunos
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Unknown vulnerability in the libgss Generic Security Services Library in Solaris 7, 8, and 9 allows local users to gain privileges by loading their own GSS-API.
1Sun
2Solaris
Sunos
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges.
1Sun
1Solaris
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
3.6 LOW· v2
Unknown vulnerability in Standard Type Services Framework (STSF) Font Server Daemon (stfontserverd) in Solaris 9 allows local users to modify or delete arbitrary files.
1Sun
2Solaris
Sunos
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unknown vulnerability in Solaris 8 and 9 allows remote attackers to cause a denial of service (panic) via "Heavy UDP Usage" that triggers a NULL dereference.