CVEs (561)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
useradd in Solaris 7.0 does not properly interpret certain date formats as specified in the "-e" (expiration date) argument, which could allow users to login after their accounts have expired. |
The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to conduct brute force password guessing. |
rpc.statd allows remote attackers to forward RPC calls to the local operating system via the SM_MON and SM_NOTIFY commands, which in turn could be used to remotely exploit other bugs such as in automountd. |
Buffer overflow in Solaris lpset program allows local users to gain root access. |
Buffer overflow in Solaris dtprintinfo program. |
64 bit Solaris 7 procfs allows local users to perform a denial of service. |
Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the terminal name argument. |
The cancel command in Solaris 2.6 (i386) has a buffer overflow that allows local users to obtain root access. |
Solaris syslogd crashes when receiving a message from a host that doesn't have an inverse DNS entry. |
In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files. |
Buffer overflow in Solaris lpstat via class argument allows local users to gain root access. |
Solaris ff.core allows local users to modify files. |
The passwd command in Solaris can be subjected to a denial of service. |
Buffer overflow in Solaris x86 mkcookie allows local users to obtain root access. |
5Eric Allman FreebsdHp+2 more7Aix FreebsdHp Ux+4 moreApr 16, 2026 Nov 16, 1998 N/A· v4 N/A· v3 7.5 HIGH· v2 Vacation program allows command execution by remote users through a sendmail command. |
CDE screen lock program (screenlock) on Solaris 2.6 does not properly lock an unprivileged user's console session when the host is an NIS+ client, which allows others with physical access to login with any string. |
Buffer overflow in Sun's ping program can give root access to local users. |
SunOS/Solaris FTP clients can be forced to execute arbitrary commands from a malicious FTP server. |
Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute commands. |
Buffer overflow in the libauth library in Solaris allows local users to gain additional privileges, possibly root access. |