Oracle

Solaris

546 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 90.73%
  • Veröffentlicht 28.09.2016 10:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

buffer.c in named in ISC BIND 9 before 9.9.9-P3, 9.10.x before 9.10.4-P3, and 9.11.x before 9.11.0rc3 does not properly construct responses, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted ...

Exploit
  • EPSS 2.48%
  • Veröffentlicht 21.09.2016 14:25:16
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in the ISO parser in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a crafted ISO file.

  • EPSS 19.8%
  • Veröffentlicht 16.09.2016 05:59:12
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The tls_decrypt_ticket function in ssl/t1_lib.c in OpenSSL before 1.1.0 does not consider the HMAC size during validation of the ticket length, which allows remote attackers to cause a denial of service via a ticket that is too short.

  • EPSS 0.21%
  • Veröffentlicht 07.08.2016 16:59:13
  • Zuletzt bearbeitet 12.04.2025 10:46:40

epan/dissectors/packet-pktap.c in the Ethernet dissector in Wireshark 2.x before 2.0.4 mishandles the packet-header data type, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

  • EPSS 0.67%
  • Veröffentlicht 07.08.2016 16:59:12
  • Zuletzt bearbeitet 12.04.2025 10:46:40

wiretap/netscreen.c in the NetScreen file parser in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles sscanf unsigned-integer processing, which allows remote attackers to cause a denial of service (application crash) via a crafted file.

Exploit
  • EPSS 0.25%
  • Veröffentlicht 02.08.2016 14:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The XSLoader::load method in XSLoader in Perl does not properly locate .so files when called in a string eval, which might allow local users to execute arbitrary code via a Trojan horse library under the current working directory.

  • EPSS 0.17%
  • Veröffentlicht 21.07.2016 10:15:28
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-3497 and CVE-2016-5469.

  • EPSS 0.1%
  • Veröffentlicht 21.07.2016 10:15:26
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-3497 and CVE-2016-5471.

  • EPSS 0.14%
  • Veröffentlicht 21.07.2016 10:15:10
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect integrity and availability via vectors related to Verified Boot.

  • EPSS 0.1%
  • Veröffentlicht 21.07.2016 10:15:08
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect confidentiality via vectors related to Verified Boot.