U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search Results (Refine Search)

Search Parameters:
  • Results Type: Overview
  • Keyword (text search): cpe:2.3:o:oracle:solaris:10:*:*:th:sparc:*:*:*
  • CPE Name Search: true
There are 143 matching records.
Displaying matches 81 through 100.
Vuln ID Summary CVSS Severity
CVE-2015-4491

Integer overflow in the make_filter_table function in pixops/pixops.c in gdk-pixbuf before 2.31.5, as used in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 on Linux, Google Chrome on Linux, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and application crash) via crafted bitmap dimensions that are mishandled during scaling.

Published: August 15, 2015; 9:59:19 PM -0400
V3.x:(not available)
V2.0: 6.8 MEDIUM
CVE-2015-1283

Multiple integer overflows in the XML_GetBuffer function in Expat through 2.1.0, as used in Google Chrome before 44.0.2403.89 and other products, allow remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted XML data, a related issue to CVE-2015-2716.

Published: July 22, 2015; 8:59:12 PM -0400
V3.x:(not available)
V2.0: 6.8 MEDIUM
CVE-2015-4770

Unspecified vulnerability in Oracle Sun Solaris 10 and 11.2 allows local users to affect availability via vectors related to UNIX filesystem.

Published: July 16, 2015; 7:01:01 AM -0400
V3.x:(not available)
V2.0: 4.9 MEDIUM
CVE-2015-2662

Unspecified vulnerability in Oracle Sun Solaris 10 and 11.2 allows local users to affect availability via vectors related to DHCP Server.

Published: July 16, 2015; 7:00:20 AM -0400
V3.x:(not available)
V2.0: 1.9 LOW
CVE-2015-2631

Unspecified vulnerability in Oracle Sun Solaris 10 and 11.2 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to rmformat.

Published: July 16, 2015; 6:59:54 AM -0400
V3.x:(not available)
V2.0: 7.2 HIGH
CVE-2015-2589

Unspecified vulnerability in Oracle Sun Solaris 10 and 11.2 allows local users to affect availability via vectors related to S10 Branded Zone.

Published: July 16, 2015; 6:59:16 AM -0400
V3.x:(not available)
V2.0: 4.9 MEDIUM
CVE-2015-2580

Unspecified vulnerability in Oracle Sun Solaris 10 and 11.2 allows local users to affect availability via vectors related to NFSv4.

Published: July 16, 2015; 6:59:07 AM -0400
V3.x:(not available)
V2.0: 1.9 LOW
CVE-2015-2577

Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Accounting commands.

Published: April 16, 2015; 1:00:08 PM -0400
V3.x:(not available)
V2.0: 7.2 HIGH
CVE-2015-2574

Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect confidentiality via unknown vectors related to Text Utilities.

Published: April 16, 2015; 1:00:06 PM -0400
V3.x:(not available)
V2.0: 2.1 LOW
CVE-2015-0471

Unspecified vulnerability in Oracle Sun Solaris 10 and 11.2 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to libelfsign.

Published: April 16, 2015; 12:59:25 PM -0400
V3.x:(not available)
V2.0: 4.4 MEDIUM
CVE-2014-5353

The krb5_ldap_get_password_policy_from_dn function in plugins/kdb/ldap/libkdb_ldap/ldap_pwd_policy.c in MIT Kerberos 5 (aka krb5) before 1.13.1, when the KDC uses LDAP, allows remote authenticated users to cause a denial of service (daemon crash) via a successful LDAP query with no results, as demonstrated by using an incorrect object type for a password policy.

Published: December 16, 2014; 6:59:00 PM -0500
V3.x:(not available)
V2.0: 3.5 LOW
CVE-2014-8094

Integer overflow in the ProcDRI2GetBuffers function in the DRI2 extension in X.Org Server (aka xserver and xorg-server) 1.7.0 through 1.16.x before 1.16.3 allows remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a crafted request, which triggers an out-of-bounds read or write.

Published: December 10, 2014; 10:59:06 AM -0500
V3.x:(not available)
V2.0: 6.5 MEDIUM
CVE-2014-0397

Multiple unspecified vulnerabilities in libXtsol in Oracle Solaris 10 and 11.1 have unspecified impact and attack vectors related to "Buffer errors."

Published: October 06, 2014; 7:55:06 PM -0400
V3.x:(not available)
V2.0: 10.0 HIGH
CVE-2011-3539

Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows local users to affect availability via unknown vectors related to Zones.

Published: October 18, 2011; 6:55:04 PM -0400
V3.x:(not available)
V2.0: 1.7 LOW
CVE-2011-3537

Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows local users to affect availability via unknown vectors related to Kernel/Filesystem.

Published: October 18, 2011; 6:55:04 PM -0400
V3.x:(not available)
V2.0: 7.8 HIGH
CVE-2011-3536

Unspecified vulnerability in Oracle Solaris 10 allows local users to affect availability, related to DTrace Software Library (libdtrace).

Published: October 18, 2011; 6:55:04 PM -0400
V3.x:(not available)
V2.0: 2.1 LOW
CVE-2011-3534

Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows remote attackers to affect availability via unknown vectors related to Network Status Monitor (statd).

Published: October 18, 2011; 6:55:04 PM -0400
V3.x:(not available)
V2.0: 5.0 MEDIUM
CVE-2011-2312

Unspecified vulnerability in Oracle Solaris 10 allows local users to affect confidentiality, related to ZFS.

Published: October 18, 2011; 6:55:02 PM -0400
V3.x:(not available)
V2.0: 1.7 LOW
CVE-2011-2311

Unspecified vulnerability in Oracle Solaris 10 allows local users to affect availability, related to ZFS, a different vulnerability than CVE-2011-2313.

Published: October 18, 2011; 6:55:02 PM -0400
V3.x:(not available)
V2.0: 1.7 LOW
CVE-2011-2304

Unspecified vulnerability in Oracle Solaris 10 allows remote attackers to affect confidentiality, related to Network Services Library (libnsl).

Published: October 18, 2011; 6:55:01 PM -0400
V3.x:(not available)
V2.0: 4.3 MEDIUM