CVE-2007-0914
https://notcve.org/view.php?id=CVE-2007-0914
Race condition in the TCP subsystem for Solaris 10 allows remote attackers to cause a denial of service (system panic) via unknown vectors. Condición de carrera en el subsistema TCP de Solaris 10 permite a atacantes remotos provocar una denegación de servicio (error irrecuperable del sistema) mediante vectores desconocidos. • http://osvdb.org/33194 http://secunia.com/advisories/24166 http://sunsolve.sun.com/search/document.do?assetkey=1-26-102796-1 http://www.securityfocus.com/bid/22550 http://www.securitytracker.com/id?1017649 http://www.vupen.com/english/advisories/2007/0588 https://exchange.xforce.ibmcloud.com/vulnerabilities/32484 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2120 •
CVE-2007-0895
https://notcve.org/view.php?id=CVE-2007-0895
Race condition in recursive directory deletion with the (1) -r or (2) -R option in rm in Solaris 8 through 10 before 20070208 allows local users to delete files and directories as the user running rm by moving a low-level directory to a higher level as it is being deleted, which causes rm to chdir to a ".." directory that is higher than expected, possibly up to the root file system, a related issue to CVE-2002-0435. Condición de carrera en el borrado de directorios recursivo con las opciones (1) -r o (2) -R en Solaris 8 hasta 10 anterior al 08/02/2007 permite a usuarios locales borrar ficheros y directorios como el usuario que está ejecutando rm moviéndose de directorio de bajo nivel a uno de mayor nivel mientras está siendo borrado, lo cual provoca que rm haga un chdir al directorio ".." que es de mayor nivel que lo esperado, posiblemente fuera del sistema de ficheros de root, un asunto relacionado con CVE-2002-0435. • http://secunia.com/advisories/24082 http://secunia.com/advisories/24405 http://sunsolve.sun.com/search/document.do?assetkey=1-26-102782-1 http://support.avaya.com/elmodocs2/security/ASA-2007-102.htm http://www.osvdb.org/31880 http://www.vupen.com/english/advisories/2007/0543 https://exchange.xforce.ibmcloud.com/vulnerabilities/32399 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8272 •
CVE-2007-0882 – Solaris 10/11 Telnet - Remote Authentication Bypass
https://notcve.org/view.php?id=CVE-2007-0882
Argument injection vulnerability in the telnet daemon (in.telnetd) in Solaris 10 and 11 (SunOS 5.10 and 5.11) misinterprets certain client "-f" sequences as valid requests for the login program to skip authentication, which allows remote attackers to log into certain accounts, as demonstrated by the bin account. La vulnerabilidad de inyección argumentos en el demonio telnet (in.telnetd) en Solaris versiones 10 y 11 (SunOS versiones 5.10 y 5.11) interpreta erróneamente ciertas secuencias "-f" del cliente como peticiones válidas para que el programa de inicio de sesión omita la autenticación, lo que permite a los atacantes remotos iniciar sesión en ciertas cuentas, como fue demostrado por la cuenta bin. • https://www.exploit-db.com/exploits/9918 https://www.exploit-db.com/exploits/16328 https://www.exploit-db.com/exploits/3293 http://erratasec.blogspot.com/2007/02/trivial-remote-solaris-0day-disable.html http://isc.sans.org/diary.html?storyid=2220 http://osvdb.org/31881 http://seclists.org/fulldisclosure/2007/Feb/0217.html http://secunia.com/advisories/24120 http://sunsolve.sun.com/search/document.do?assetkey=1-26-102802-1 http://www.kb.cert.org/vuls/id/881872 ht • CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') •
CVE-2007-0668
https://notcve.org/view.php?id=CVE-2007-0668
The Loopback Filesystem (LOFS) in Sun Solaris 10 allows local users in a non-global zone to move and rename files in a read-only filesystem, which could lead to a denial of service. El sistema de ficheros de bucle invertido (Loopback Filesystem o LOFS) en Sun Solaris 10 permite a usuarios locales en una zona no global mover y renombrar archivos en un sistema de ficheros de sólo lectura, lo cual podría llevar a una denegación de servicio. • http://osvdb.org/31879 http://secunia.com/advisories/23996 http://securitytracker.com/id?1017582 http://sunsolve.sun.com/search/document.do?assetkey=1-26-102699-1 http://www.securityfocus.com/bid/22364 http://www.vupen.com/english/advisories/2007/0462 https://exchange.xforce.ibmcloud.com/vulnerabilities/32140 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1372 •
CVE-2007-0634 – Sun Solaris 10 - ICMP Remote Denial of Service
https://notcve.org/view.php?id=CVE-2007-0634
Unspecified vulnerability in Sun Solaris 10 before 20070130 allows remote attackers to cause a denial of service (system crash) via certain ICMP packets. Vulnerabilidad no especificada en Sun Solaris 10 versiones anteriores a 20070130 permite a atacantes remotos provocar una denegación de servicio (caída de sistema) mediante paquetes ICMP concretos. • https://www.exploit-db.com/exploits/29540 https://www.exploit-db.com/exploits/4881 http://osvdb.org/31878 http://secunia.com/advisories/23982 http://securitytracker.com/id?1017574 http://sunsolve.sun.com/search/document.do?assetkey=1-26-102697-1 http://www.kb.cert.org/vuls/id/967236 http://www.securityfocus.com/bid/22323 http://www.vupen.com/english/advisories/2007/0420 https://exchange.xforce.ibmcloud.com/vulnerabilities/32010 https://oval.cisecurity.org/repository/ •