CVEs (561)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
13Caldera ConectivaDebian+10 more16Aix Debian LinuxImmunix+13 moreApr 16, 2026 Nov 14, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. |
Buffer overflow in ufsrestore in Solaris 8 and earlier allows local users to gain root privileges via a long pathname. |
Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option. |
Buffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long -dev parameter. |
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option. |
Buffer overflow in Solaris 7 lp allows local users to gain root privileges via a long -d option. |
Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n option. |
/usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users to view the environment variables and values of arbitrary processes via the -e option. |
loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vulnerability than CVE-1999-1584. |
The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the system is booting, which allows attackers with physical access to gain...Show more |
Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root privileges via environm...Show more |
4Apple BsdSgi+1 more4A Ux BsdIrix+1 moreApr 16, 2026 Dec 31, 1999 N/A· v4 N/A· v3 2.1 LOW· v2 lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times. |
Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database. |
Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database. |
Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request. |
Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquotad service. |
Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when snoop is running in verbose mode. |
Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack. |
Solaris arp allows local users to read files via the -f parameter, which lists lines in the file that do not parse properly. |
Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type. |