| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Sun Cluster 2.2 through 3.2 for Oracle Parallel Server / Real Application Clusters (OPS/RAC) allows local users to cause a denial of service (cluster node panic or abort) by launching a daemon listening on a TCP port that would otherwise be used by the Distributed Lock Manager (DLM), possibly involving this daemon responding in a manner that spoofs a cluster reconfiguration. |
| The TCP implementation in Sun Solaris 8, 9, and 10 before 20060726 allows remote attackers to cause a denial of service (resource exhaustion) via a TCP packet with an incorrect sequence number, which triggers an ACK storm. |
| Buffer overflow in ffbconfig in Solaris 2.5.1. |
| Delete or create a file via rpc.statd, due to invalid information. |
| Teardrop IP denial of service. |
| Buffer overflow in xlock program allows local users to execute commands as root. |
| The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character). |
| Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges. |
| In Solaris 2.2 and 2.3, when fsck fails on startup, it allows a local user with physical access to obtain root access. |
| Buffer overflow in Sun's ping program can give root access to local users. |
| DNS cache poisoning via BIND, by predictable query IDs. |
| Local user gains root privileges via buffer overflow in rdist, via lookup() function. |
| Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file. |
| Expreserve, as used in vi and ex, allows local users to overwrite arbitrary files and gain root access. |
| admintool in Solaris allows a local user to write to arbitrary files and gain root access. |
| Buffer overflow in Solaris x86 mkcookie allows local users to obtain root access. |
| Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys. |
| The SunView (SunTools) selection_svc facility allows remote users to read files. |
| Denial of service by sending forged ICMP unreachable packets. |
| Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd). |