Known Vulnerabilities for products from Cray

Listed below are 10 of the newest known vulnerabilities associated with the vendor "Cray".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2014-0748 apinit on Cray devices with CLE before 4.2.UP02 and 5.x before 5.1.UP00 does not use alpsauth data to validate the UID in a l... 7.2 - HIGH 2014-12-27 2014-12-30
CVE-2006-0178 Format string vulnerability in /bin/ftp in UNICOS 9.0.2.2 allows local users to have an unknown impact via format string spec... 7.2 - HIGH 2006-01-11 2017-07-20
CVE-2006-0177 Multiple buffer overflows in Cray UNICOS 9.0.2.2 might allow local users to gain privileges by (1) invoking /usr/bin/script w... 7.2 - HIGH 2006-01-11 2017-07-20
CVE-2003-0028 Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libra... 7.5 - HIGH 2003-03-25 2020-01-21
CVE-2001-0891 Format string vulnerability in NQS daemon (nqsdaemon) in NQE 3.3.0.16 for CRAY UNICOS and SGI IRIX allows a local user to gai... 7.2 - HIGH 2002-01-31 2017-10-10
CVE-1999-1468 rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying t... 6.2 - MEDIUM 1991-10-22 2008-09-10
CVE-1999-1300 Vulnerability in accton in Cray UNICOS 6.1 and 6.0 allows local users to read arbitrary files and modify system accounting co... 3.6 - LOW 1999-12-31 2008-09-05
CVE-1999-0692 The default configuration of the Array Services daemon (arrayd) disables authentication, allowing remote users to gain root p... 10 - HIGH 1999-07-19 2008-09-09
CVE-1999-0099 Buffer overflow in syslog utility allows local or remote attackers to gain root privileges. 10 - HIGH 1995-10-19 2022-08-17
CVE-1999-0041 Buffer overflow in NLS (Natural Language Service). 7.5 - HIGH 1997-02-13 2022-08-17

Known software with vulnerabilities from Cray

Type Vendor Product Version
Operating
System
CrayUnicos-
Operating
System
CrayUnicos Lc-
Operating
System
CrayUnicos Max1.3
Operating
System
CrayUnicos Mk-