cray CVE Vulnerabilities & CVE List (10)

Products (CPE): — CVEs: 10

cray vulnerability overview

Aggregates CVE and security vulnerability intelligence across all cray-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk input validation, vendor risk buffer overflow, and vendor risk integer handling; exposure may include vendor impact unexpected behavior in vendor surface software deployment contexts.

Vulnerability distribution trend (last 24 months)

Showing 110 of 10 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2014-0748 apinit on Cray devices with CLE before 4.2.UP02 and 5.x before 5.1.UP00 does not use alpsauth data to validate the UID in a launch message, which allows local users to gain privileges via a modified aprun program, aka ID FN5912. [email protected] 7.2 0.34% 2014-12-27 2026-05-06
CVE-2006-0178 Format string vulnerability in /bin/ftp in UNICOS 9.0.2.2 allows local users to have an unknown impact via format string specifiers in the quote command. NOTE: because the program is not setuid and not normally called from remote programs, there may not be a typical attack vector for the issue that crosses privilege boundaries. Therefore this may not be a vulnerability. [email protected] 7.2 0.34% 2006-01-11 2026-04-16
CVE-2006-0177 Multiple buffer overflows in Cray UNICOS 9.0.2.2 might allow local users to gain privileges by (1) invoking /usr/bin/script with a long command line argument or (2) setting the -c option of /etc/nu to the name of a file containing a long line. [email protected] 7.2 1.01% 2006-01-11 2026-04-16
CVE-2003-0028 Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391. [email protected] 7.5 15.03% 2003-03-25 2026-06-16
CVE-2001-0891 Format string vulnerability in NQS daemon (nqsdaemon) in NQE 3.3.0.16 for CRAY UNICOS and SGI IRIX allows a local user to gain root privileges by using qsub to submit a batch job whose name contains formatting characters. [email protected] 7.2 0.35% 2002-01-31 2026-06-16
CVE-1999-1300 Vulnerability in accton in Cray UNICOS 6.1 and 6.0 allows local users to read arbitrary files and modify system accounting configuration. [email protected] 3.6 0.32% 1999-12-31 2026-06-16
CVE-1999-0692 The default configuration of the Array Services daemon (arrayd) disables authentication, allowing remote users to gain root privileges. [email protected] 10.0 2.40% 1999-07-19 2026-06-16
CVE-1999-0041 Buffer overflow in NLS (Natural Language Service). [email protected] 7.5 9.09% 1997-02-13 2026-06-16
CVE-1999-0099 Buffer overflow in syslog utility allows local or remote attackers to gain root privileges. [email protected] 10.0 3.19% 1995-10-19 2026-06-16
CVE-1999-1468 rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable. [email protected] 6.2 0.34% 1991-10-22 2026-06-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence