Secunia CSI7
Advisories
Research
Forums
Create Profile
Our Commitment
Database
Search
Advisories by Product
Advisories by Vendor
Terminology
Report Vulnerability
Insecure Library Loading

Vulnerability Report: Sun Solaris 10.x

This vulnerability report for Sun Solaris 10.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Sun Solaris 10.x then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2014
2.2. Statistics for 2013
2.3. Statistics for 2012
2.4. Statistics for 2011
2.5. Statistics for 2010
2.6. Statistics for 2009
2.7. Statistics for 2008
2.8. Statistics for 2007
2.9. Statistics for 2006
2.10. Statistics for 2005
2.11. Statistics for 2004
2.12. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2014
3.2. List for 2013
3.3. List for 2012
3.4. List for 2011
3.5. List for 2010
3.6. List for 2009
3.7. List for 2008
3.8. List for 2007
3.9. List for 2006
3.10. List for 2005
3.11. List for 2004
3.12. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Sun Microsystems

Product Link View Here (Link to external site)

Affected By 533 Secunia advisories
1697 Vulnerabilities

Monitor Product Receive alerts for this product

Unpatched 2% (9 of 533 Secunia advisories)

Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Sun Solaris 10.x, with all vendor patches applied, is rated Highly critical .




28 Secunia Advisories in 2012

Secunia has issued a total of 28 Secunia advisories in 2012 for Sun Solaris 10.x. Currently, 0% (0 out of 28) are marked as unpatched.

More information about the specific Secunia advisories affecting Sun Solaris 10.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



Oracle Solaris Apache HTTP Server LD_LIBRARY_PATH and Cross-Site Scripting Vulnerabilities
Vendor Patch. Secunia Advisory 1 of 28 in 2012. 1,306 views.
Release Date:
2012-12-19
Secunia Advisory ID:
SA51575
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Privilege escalation
Where:
From remote
Short Description:
Oracle has acknowledged a security issue and a vulnerability in Apache HTTP Server included in Solaris, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to conduct cross-site scripting attacks. [Read More]


Oracle Solaris Mozilla Firefox Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 28 in 2012. 1,299 views.
Release Date:
2012-12-12
Secunia Advisory ID:
SA51562
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Cross Site Scripting
Spoofing
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Oracle has acknowledged multiple vulnerabilities in Firefox included in Solaris, which can be exploited by malicious people to disclose potentially sensitive information, conduct cross-site scripting and phishing attacks, bypass certain security restrictions, and compromise a user's system. [Read More]


Oracle Solaris GNOME Structured File Library "ole_info_read_metabat()" Buffer Overflow
Vendor Patch. Secunia Advisory 3 of 28 in 2012. 933 views.
Release Date:
2012-12-12
Secunia Advisory ID:
SA51561
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Oracle has acknowledged a vulnerability in libgsf included in Solaris, which can be exploited by malicious people to compromise an application using the library. [Read More]


Oracle Solaris Thunderbird Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 4 of 28 in 2012. 1,339 views.
Release Date:
2012-12-12
Secunia Advisory ID:
SA51563
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Cross Site Scripting
Spoofing
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Oracle has acknowledged multiple vulnerabilities in Thunderbird included in Solaris, which can be exploited by malicious people to conduct spoofing and cross-site scripting attacks, disclose certain sensitive information, bypass certain security restrictions, and compromise a user's system. [Read More]


Oracle Solaris Webmin Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 5 of 28 in 2012. 1,041 views.
Release Date:
2012-12-12
Secunia Advisory ID:
SA51515
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Oracle has acknowledge multiple vulnerabilities in Webmin included in Solaris, which can be exploited by malicious users to compromise a vulnerable system and by malicious people disclose certain sensitive information. [Read More]


Oracle Solaris Libxml2 Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 6 of 28 in 2012. 1,825 views.
Release Date:
2012-11-21
Secunia Advisory ID:
SA51373
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Oracle has acknowledged multiple vulnerabilities in Libxml2 included in Solaris, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library. [Read More]


Oracle Solaris Adobe Flash Player Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 28 in 2012. 1,437 views.
Release Date:
2012-10-31
Secunia Advisory ID:
SA51131
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Oracle has acknowledged multiple vulnerabilities in Adobe Flash Player included in Solaris, which can be exploited by malicious people to gain knowledge of potentially sensitive information or compromise a user's system. [Read More]


Oracle Solaris BIND Record Handling Lockup Vulnerability
Vendor Patch. Secunia Advisory 8 of 28 in 2012. 1,396 views.
Release Date:
2012-10-24
Secunia Advisory ID:
SA51078
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Oracle has acknowledged a vulnerability in BIND included in Solaris, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Oracle Solaris 7-zip Unspecified Vulnerability
Vendor Patch. Secunia Advisory 9 of 28 in 2012. 1,088 views.
Release Date:
2012-10-24
Secunia Advisory ID:
SA50926
Solution Status:
Vendor Patch
Criticality:
Impact:
Unknown
Where:
From remote
Short Description:
Oracle has acknowledged a vulnerability with an unknown impact in 7-zip included in Solaris. [Read More]


Oracle Solaris Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 10 of 28 in 2012. 1,415 views.
Release Date:
2012-10-17
Secunia Advisory ID:
SA50911
Solution Status:
Vendor Patch
Criticality:
Impact:
Hijacking
Manipulation of data
Exposure of sensitive information
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
A weakness and multiple vulnerabilities have been reported in Oracle Solaris, which can be exploited by malicious, local users to disclose potentially sensitive information, manipulate certain data, cause a DoS (Denial of Service), and gain escalated privileges, by malicious users to cause a DoS and potentially compromise a vulnerable system, and by malicious people to disclose certain sensitive information, hijack a user's session, cause a DoS and compromise a vulnerable system. [Read More]


Oracle Solaris libxml2 "xmlXPtrEvalXPtrPart()" Off-By-One Vulnerability
Vendor Patch. Secunia Advisory 11 of 28 in 2012. 895 views.
Release Date:
2012-10-10
Secunia Advisory ID:
SA50891
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Oracle has acknowledged a vulnerability in libxml2 included in Solaris, which can be exploited by malicious people to compromise an application using the library. [Read More]


Oracle Solaris BIND Resource Record Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 12 of 28 in 2012. 1,125 views.
Release Date:
2012-10-10
Secunia Advisory ID:
SA50947
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Oracle has acknowledged a vulnerability in BIND included in Solaris, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Oracle Solaris PostgreSQL "xml_parse()" and "xslt_process()" Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 28 in 2012. 1,003 views.
Release Date:
2012-10-10
Secunia Advisory ID:
SA50946
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Oracle has acknowledged two vulnerabilities in PostgreSQL included in Solaris, which can be exploited by malicious people to disclose certain sensitive information and compromise a user's system. [Read More]


Oracle Solaris Pidgin Two Denial of Service Weaknesses
Vendor Patch. Secunia Advisory 14 of 28 in 2012. 931 views.
Release Date:
2012-10-10
Secunia Advisory ID:
SA50945
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Oracle has acknowledged two weaknesses in Pidgin included in Solaris, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Oracle Solaris Perl CGI.pm "header()" HTTP Header Injection Vulnerability
Vendor Patch. Secunia Advisory 15 of 28 in 2012. 1,197 views.
Release Date:
2012-10-03
Secunia Advisory ID:
SA50845
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
Oracle has acknowledged a vulnerability in Perl included in Solaris, which can be exploited by malicious people to conduct HTTP response splitting attacks in an application using the library. [Read More]


Oracle Solaris IMPItool Insecure PID Files Security Issue
Vendor Patch. Secunia Advisory 16 of 28 in 2012. 1,218 views.
Release Date:
2012-10-01
Secunia Advisory ID:
SA50830
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
Oracle has acknowledged a security issue in IMPItool included in Solaris, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


Oracle Solaris Expat XML Parser Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 17 of 28 in 2012. 1,060 views.
Release Date:
2012-09-25
Secunia Advisory ID:
SA50750
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Oracle has acknowledged a vulnerability in libexpat included in Solaris, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Oracle Solaris ICU "_canonicalize()" Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 18 of 28 in 2012. 981 views.
Release Date:
2012-09-25
Secunia Advisory ID:
SA50749
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Oracle has acknowledged a vulnerability in International Components for Unicode (ICU) included in Solaris, which potentially can be exploited by malicious people to compromise an application using the library. [Read More]


Oracle Solaris Mozilla Firefox Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 19 of 28 in 2012. 1,389 views.
Release Date:
2012-09-25
Secunia Advisory ID:
SA50747
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Spoofing
Exposure of system information
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Oracle has acknowledged multiple vulnerabilities in Firefox included in Solaris, which can be exploited by malicious people to conduct cross-site scripting and spoofing attacks, disclose certain system and sensitive information, and compromise a user's system. [Read More]


Oracle Solaris Pidgin Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 20 of 28 in 2012. 919 views.
Release Date:
2012-09-25
Secunia Advisory ID:
SA50746
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
DoS
System access
Where:
From remote
Short Description:
Oracle has acknowledged some vulnerabilities in Pidgin included in Solaris, which can be exploited by malicious, local users to disclose potentially sensitive information and by malicious people to cause a DoS (Denial of Service) and compromise a user's system. [Read More]


Oracle Solaris Apache Tomcat Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 21 of 28 in 2012. 1,497 views.
Release Date:
2012-09-25
Secunia Advisory ID:
SA50745
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Manipulation of data
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Oracle has acknowledged multiple weaknesses, security issues, and vulnerabilities in Apache Tomcat included in Solaris, which can be exploited by malicious, local users to bypass certain security restrictions and disclose sensitive information and by malicious people to bypass certain security restrictions, manipulate certain data, disclose sensitive information, and cause a DoS (Denial of Service). [Read More]


Oracle Solaris Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 22 of 28 in 2012. 2,358 views.
Release Date:
2012-04-18
Secunia Advisory ID:
SA48809
Solution Status:
Vendor Patch
Criticality:
Impact:
Manipulation of data
Exposure of sensitive information
Privilege escalation
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Oracle Solaris, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and gain escalated privileges and by malicious people to disclose potentially sensitive information and manipulate certain data. [Read More]


Oracle Solaris Pidgin YMSG Denial of Service Weakness
Vendor Patch. Secunia Advisory 23 of 28 in 2012. 1,058 views.
Release Date:
2012-02-10
Secunia Advisory ID:
SA47895
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Oracle has acknowledged a weakness in Pidgin included in Solaris, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Oracle Solaris Adobe Flash Player Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 24 of 28 in 2012. 1,629 views.
Release Date:
2012-02-08
Secunia Advisory ID:
SA47886
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
Oracle has acknowledged multiple vulnerabilities in Adobe Flash Player included in Solaris, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. [Read More]


Oracle Solaris Apache Tomcat Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 25 of 28 in 2012. 1,709 views.
Release Date:
2012-01-27
Secunia Advisory ID:
SA47736
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Oracle has acknowledged a weakness, a security issue and two vulnerabilities in Apache Tomcat included in Solaris, which can be exploited by malicious, local users to disclose sensitive information, bypass certain security restrictions, and cause a DoS (Denial of Service) and by malicious people to disclose potentially sensitive information and bypass certain security restrictions. [Read More]


Oracle Solaris Thunderbird Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 26 of 28 in 2012. 1,415 views.
Release Date:
2012-01-19
Secunia Advisory ID:
SA47636
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
Oracle has acknowledged multiple vulnerabilities in Thunderbird included in Solaris, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. [Read More]


Oracle Solaris libexif Two Vulnerabilities
Vendor Patch. Secunia Advisory 27 of 28 in 2012. 1,363 views.
Release Date:
2012-01-19
Secunia Advisory ID:
SA47623
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Oracle has acknowledged two vulnerabilities in libexif included in Solaris, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library. [Read More]


Oracle Solaris Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 28 of 28 in 2012. 2,143 views.
Release Date:
2012-01-18
Secunia Advisory ID:
SA47611
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
Privilege escalation
DoS
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Oracle Solaris, which can be exploited by malicious, local users to disclose system information, gain escalated privileges, and cause a DoS (Denial of Service) and by malicious people to cause a DoS (Denial of Service). [Read More]





Discuss this Product
A new thread in our forum is automatically created for each Product. Activate the thread by commenting/discussing below.
Subject: Sun Solaris 10.x 
No posts yet

-

You must be logged in to post a comment.



 Products Solutions Customers Partner Resources Company
 
 Corporate
Vulnerability Intelligence Manager (VIM)
Corporate Software Inspector (CSI)
Consumer
Personal Software Inspector (PSI)
Online Software Inspector (OSI)
 Industry
Compliance
Technology
Integration
 Customers
Testimonials
 VARS
MSSP
Technology Partners
References
 Factsheets
Reports
Webinars
Events
 About us
Careers
Memberships
Newsroom


 
© 2002-2014 Secunia ApS - Rued Langgaards Vej 8, 4th floor, DK-2300 Copenhagen, Denmark - +45 7020 5144
Terms & Conditions and Copyright - Privacy - Report Vulnerability