Page 5 of 37 results (0.008 seconds)

CVSS: 4.9EPSS: 0%CPEs: 168EXPL: 0

The IP implementation in Sun Solaris 8 through 10, and OpenSolaris before snv_82, uses an improper arena when allocating minor numbers for sockets, which allows local users to cause a denial of service (32-bit application failure and login outage) by opening a large number of sockets. La implementación IP en Sun Solaris v8 a la v10 y OpenSolaris anterior a snv_82, emplea una arena inadecuada cuando al asignar números secundarios para sockets, lo que permite a usuarios locales provocar una denegación de servicio (fallo en la aplicación 32-bit o parada de login) mediante la apertura de un gran número de sockets. • http://mail.opensolaris.org/pipermail/onnv-notify/2008-January/013262.html http://secunia.com/advisories/33751 http://securitytracker.com/id?1021653 http://sunsolve.sun.com/search/document.do?assetkey=1-21-116965-34-1 http://sunsolve.sun.com/search/document.do?assetkey=1-66-248026-1 http://support.avaya.com/elmodocs2/security/ASA-2009-042.htm http://www.securityfocus.com/bid/33550 http://www.vupen.com/english/advisories/2009/0364 https://oval.cisecurity.org/repository/search/def • CWE-189: Numeric Errors •

CVSS: 5.4EPSS: 2%CPEs: 74EXPL: 0

Unspecified vulnerability in the NFSv4 client module in the kernel on Sun Solaris 10 and OpenSolaris before snv_37, when automountd is used, allows user-assisted remote attackers to cause a denial of service (unresponsive NFS filesystems) via unknown vectors. Vulnerabilidad no especificada en el módulo del kernel del cliente NFSv4 de Sun Solaris v10 y OpenSolaris en versiones anteriores a snv_37. Cuando se utiliza automountd, permite a atacantes remotos, con la intervención del usuario, causar un ataque de denegación de servicio sobre los sistemas de archivos de tipo NFS mediante vectores de ataque desconocidos. • http://secunia.com/advisories/31517 http://securitytracker.com/id?1020716 http://sunsolve.sun.com/search/document.do?assetkey=1-26-240546-1 http://www.securityfocus.com/bid/30753 http://www.vupen.com/english/advisories/2008/2415 https://exchange.xforce.ibmcloud.com/vulnerabilities/44546 • CWE-399: Resource Management Errors •

CVSS: 6.9EPSS: 0%CPEs: 210EXPL: 0

Unspecified vulnerability in the autofs module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_108, allows local users to cause a denial of service (autofs mount outage) or possibly gain privileges via vectors related to "xdr processing problems." Vulnerabilidad sin especificar en el módulo autofs en el kernel en Sun Solaris 8 a la 10, y OpenSolaris anterior a snv_108, permite a usuarios locales provocar una denegación de servicio (parada del montaje autofs) o posiblemente la obtención de privilegios a través de vectores relacionados con "problemas de procesado xdr (xdr processing problems)." • http://secunia.com/advisories/33665 http://sunsolve.sun.com/search/document.do?assetkey=1-21-128624-09-1 http://sunsolve.sun.com/search/document.do?assetkey=1-66-249966-1 http://support.avaya.com/elmodocs2/security/ASA-2009-041.htm http://www.securityfocus.com/bid/33459 http://www.securitytracker.com/id?1021644 http://www.vupen.com/english/advisories/2009/0256 http://www.vupen.com/english/advisories/2009/0363 https://exchange.xforce.ibmcloud.com/vulnerabilities/48234 https:/ •

CVSS: 7.8EPSS: 35%CPEs: 217EXPL: 1

The kernel in Sun Solaris 10 and 11 snv_101b, and OpenSolaris before snv_108, allows remote attackers to cause a denial of service (system crash) via a crafted IPv6 packet, related to an "insufficient validation security vulnerability," as demonstrated by SunOSipv6.c. El kernel en Sun Solaris versiones 10 y 11 snv_101b, y OpenSolaris anterior a snv_108, permite a los atacantes remotos causar una denegación de servicio (bloqueo del sistema) por medio de un paquete IPv6 diseñado, relacionado con una "insufficient validation security vulnerability," como es demostrado mediante el archivo SunOSipv6.c. • https://www.exploit-db.com/exploits/7865 http://lists.grok.org.uk/pipermail/full-disclosure/2009-January/067709.html http://secunia.com/advisories/33605 http://securitytracker.com/id?1021635 http://sunsolve.sun.com/search/document.do?assetkey=1-66-251006-1 http://www.securityfocus.com/bid/33435 http://www.vupen.com/english/advisories/2009/0232 https://exchange.xforce.ibmcloud.com/vulnerabilities/48208 •

CVSS: 4.9EPSS: 0%CPEs: 210EXPL: 0

Race condition in the pseudo-terminal (aka pty) driver module in Sun Solaris 8 through 10, and OpenSolaris before snv_103, allows local users to cause a denial of service (panic) via unspecified vectors related to lack of "properly sequenced code" in ptc and ptsl. Una condición de carrera en el pseudo-terminal (alias PTY) en el módulo controlador de Sun Solaris 8 a 10, y OpenSolaris en versiones anteriores a la snv_103, permite a usuarios locales provocar una denegación de servicio (con un panic del kernel) a través de vectores no especificados relacionados con la falta de "código correctamente secuenciado" en PTC y PTSL. • http://secunia.com/advisories/33708 http://sunsolve.sun.com/search/document.do?assetkey=1-21-113685-07-1 http://sunsolve.sun.com/search/document.do?assetkey=1-66-249586-1 http://support.avaya.com/elmodocs2/security/ASA-2009-034.htm http://www.securityfocus.com/bid/33406 http://www.securitytracker.com/id?1021640 https://exchange.xforce.ibmcloud.com/vulnerabilities/48179 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6061 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •