Unixware
Sign in to watchby SCO Group
CVEs (66)
| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2005-0109 | Med | 0.36 | 5.6 | 0.00 | Mar 5, 2005 | Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses. | |
| CVE-1999-0011 | Med | 0.36 | 5.4 | 0.11 | Apr 8, 1998 | Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer. | |
| CVE-1999-0009 | 0.09 | — | 0.80 | Apr 8, 1998 | Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases. | ||
| CVE-1999-0368 | 0.07 | — | 0.48 | Feb 9, 1999 | Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. | ||
| CVE-2000-1014 | 0.04 | — | 0.09 | Dec 11, 2000 | Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter. | ||
| CVE-1999-0693 | 0.04 | — | 0.17 | Mar 2, 2000 | Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges. | ||
| CVE-2000-0026 | 0.04 | — | 0.08 | Dec 21, 1999 | Buffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password authorization string. | ||
| CVE-2008-6559 | 0.03 | — | 0.00 | Mar 30, 2009 | Merge mcd in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges via a crafted -d argument that contains .. (dot dot) sequences that point to a directory containing a file whose name includes shell metacharacters. | ||
| CVE-2008-6558 | 0.03 | — | 0.00 | Mar 30, 2009 | Untrusted search path vulnerability in (1) hvdisp and (2) rcvm in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges by modifying the RELIANT_PATH environment variable to point to a malicious bin/hvenv program. | ||
| CVE-2008-0310 | 0.03 | — | 0.00 | Apr 7, 2008 | Directory traversal vulnerability in pkgadd in SCO UnixWare 7.1.4 before p534589 allows local users to create or append to arbitrary files via ".." sequences in an unspecified environment variable, probably PKGINST. | ||
| CVE-2008-1343 | 0.03 | — | 0.00 | Mar 17, 2008 | Directory traversal vulnerability in (1) pkgadd and (2) pkgrm in SCO UnixWare 7.1.4 allows local users to gain privileges via unknown vectors. | ||
| CVE-2006-4655 | 0.03 | — | 0.01 | Sep 9, 2006 | Buffer overflow in the Strcmp function in the XKEYBOARD extension in X Window System X11R6.4 and earlier, as used in SCO UnixWare 7.1.3 and Sun Solaris 8 through 10, allows local users to gain privileges via a long _XKB_CHARSET environment variable value. | ||
| CVE-2005-2934 | 0.03 | — | 0.01 | Dec 31, 2005 | Unspecified vulnerability in ptrace in SCO UnixWare 7.1.3 and 7.1.4 allows local users to gain privileges via unspecified vectors. | ||
| CVE-2004-0996 | 0.03 | — | 0.01 | Jan 10, 2005 | main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack. | ||
| CVE-2003-0834 | 0.03 | — | 0.01 | Dec 1, 2003 | Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARCHPATH environment variable and the Help feature, (2) DTSEARCHPATH, or (3) LOGNAME. | ||
| CVE-1999-0979 | 0.03 | — | 0.00 | Apr 11, 2000 | The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed. | ||
| CVE-2000-0154 | 0.03 | — | 0.00 | Feb 16, 2000 | The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack. | ||
| CVE-2000-0224 | 0.03 | — | 0.00 | Feb 15, 2000 | ARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink attack. | ||
| CVE-1999-0988 | 0.03 | — | 0.00 | Dec 4, 1999 | UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack. | ||
| CVE-1999-0866 | 0.03 | — | 0.01 | Dec 3, 1999 | Buffer overflow in UnixWare xauto program allows local users to gain root privilege. |