<?xml version="1.0" encoding="UTF-8"?>
<oval_definitions xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval-definitions-5 oval-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#independent independent-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris solaris-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-common-5 oval-common-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#unix unix-definitions-schema.xsd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5">
  <generator>
    <oval:product_name>The OVAL Repository</oval:product_name>
    <oval:schema_version>5.9</oval:schema_version>
    <oval:timestamp>2012-01-27T05:11:19.836-05:00</oval:timestamp>
  </generator>
  <definitions>
    <definition id="oval:org.mitre.oval:def:998" version="1" class="vulnerability">
      <metadata>
        <title>Solaris Xorg Privilege Escalation via Pixmaps Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>X</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2495" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2495"/>
        <description>Multiple integer overflows in XFree86 before 4.3.0 allow user-assisted attackers to execute arbitrary code via a crafted pixmap image.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-12T01:16:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criteria operator="AND" comment="Solaris 9 (x86,Xorg) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
            <criterion comment="Patch 118908-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1337"/>
            <criterion comment="File Xorg exists" negate="false" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86,Xorg) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
            <criterion comment="Patch 118966-09 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1335"/>
            <criterion comment="File Xorg exists" negate="false" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="The Xorg X server is running" negate="false" test_ref="oval:org.mitre.oval:tst:1334"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:943" version="2" class="vulnerability">
      <metadata>
        <title>Solaris Xsun and Xprt Unspecified Local Privilege Escalation</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Xsun</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3099" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3099"/>
        <description>Unspecified vulnerability in the (1) Xsun and (2) Xprt commands in Solaris 7, 8, 9, and 10 allows local users to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:54.666-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:16:01.243-04:00">ACCEPTED</status_change>
            <modified comment="Corrected CVE reference and title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:00:00.106-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:01:36.132-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:28.569-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criterion comment="Solaris 7 is installed." negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 108652-93 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3400"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 108653-82 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3355"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 112785-50 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4130"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 112786-39 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3404"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 119059-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3997"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 119060-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3529"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="OR">
          <criteria operator="AND" comment="File Xsun is SUID|SGID AND Executable" negate="false">
            <criteria operator="OR" comment="File Xsun SUID|SGID" negate="false">
              <criterion comment="File Xsun SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3963"/>
              <criterion comment="File Xprt SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3558"/>
            </criteria>
            <criterion comment="File Xsun SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3178"/>
          </criteria>
          <criteria operator="AND" comment="File Xprt is SUID|SGID AND Executable" negate="false">
            <criteria operator="OR" comment="File Xprt SUID|SGID" negate="false">
              <criterion comment="File Xsun SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3963"/>
              <criterion comment="File Xprt SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3558"/>
            </criteria>
            <criterion comment="File Xsun SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3178"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:9127" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the IP Implementation for Solaris 8 and 9 May Allow a Denial of Service</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2045" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2045"/>
        <description>Unspecified vulnerability in the IP implementation in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (CPU consumption) via crafted IP packets, probably related to fragmented packets with duplicate or missing fragments.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-06T11:39:14.000-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </submitted>
            <status_change date="2007-08-08T21:33:23.689-04:00">DRAFT</status_change>
            <status_change date="2007-08-23T14:55:20.078-04:00">INTERIM</status_change>
            <status_change date="2007-09-10T14:45:27.505-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102866" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 116965-26 or later installed" test_ref="oval:org.mitre.oval:tst:4585" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102866" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 114344-25 or later installed" test_ref="oval:org.mitre.oval:tst:4736" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102866" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 116966-25 or later installed" test_ref="oval:org.mitre.oval:tst:4659" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102866" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 119435-15 or later installed" test_ref="oval:org.mitre.oval:tst:4750" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:881" version="2" class="vulnerability">
      <metadata>
        <title>Bourne Shell Local-DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-1780" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1780"/>
        <description>The Bourne shell (sh) in Solaris 8, 9, and 10 allows local users to cause a denial of service (sh crash) via an unspecified attack vector that causes sh processes to crash during creation of temporary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-04-14T06:41:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-19T10:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-10T08:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
            <modified comment="Changed criterion to check for the patch or later being installed instead of simply checking if the patch is installed." date="2009-07-17T11:04:00.601-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </modified>
            <status_change date="2009-07-17T11:07:21.610-04:00">INTERIM</status_change>
            <status_change date="2009-08-03T04:00:04.542-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 109324-09 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1520"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 118535-03 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1519"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 121004-01 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1518"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 109325-09 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1517"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118536-03 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1516"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 121005-01 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1515"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:8599" version="2" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in GNU tar (see gtar(1)) May Lead to Files Being Overwritten, Execution of Arbitrary Code, or a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4476" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4476"/>
        <description>Buffer overflow in the safer_name_suffix function in GNU tar has unspecified attack vectors and impact, resulting in a "crashing stack."</description>
        <oval_repository>
          <dates>
            <submitted date="2010-03-26T14:24:08.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2010-03-26T14:56:04.724-04:00">DRAFT</status_change>
            <status_change date="2010-05-17T04:01:42.064-04:00">INTERIM</status_change>
            <status_change date="2010-06-07T04:01:26.445-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 273551">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 118191-04 or later installed" test_ref="oval:org.mitre.oval:tst:21169"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 273551">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 139099-03 or later installed" test_ref="oval:org.mitre.oval:tst:20999"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 273551">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 118192-04 or later installed" test_ref="oval:org.mitre.oval:tst:21124"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 273551">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 139100-03 or later installed" test_ref="oval:org.mitre.oval:tst:21085"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:8334" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in lbxproxy(1) may Allow Unauthorized Read Access to Files</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4070" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4070"/>
        <description>Unspecified vulnerability in Low Bandwidth X proxy (lbxproxy) on Sun Solaris 8 through 10 before 20070725 allows local users to read arbitrary files with root group ownership via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-01T13:14:10.000-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </submitted>
            <status_change date="2007-08-01T22:21:39.310-04:00">DRAFT</status_change>
            <status_change date="2007-08-20T08:04:42.437-04:00">INTERIM</status_change>
            <status_change date="2007-09-06T09:13:34.971-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102948" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 119067-08 or later installed" test_ref="oval:org.mitre.oval:tst:5089" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102948" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 112785-62 or later installed" test_ref="oval:org.mitre.oval:tst:4378" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102948" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 119059-28 or later installed" test_ref="oval:org.mitre.oval:tst:4559" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102948" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 119068-08 or later installed" test_ref="oval:org.mitre.oval:tst:4495" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102948" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 112786-51 or later installed" test_ref="oval:org.mitre.oval:tst:4915" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102948" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 119060-27 or later installed" test_ref="oval:org.mitre.oval:tst:5067" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:8272" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in rm(1) may Lead to Unauthorized Deletion of Files or Directories</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0895" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0895"/>
        <description>Race condition in recursive directory deletion with the (1) -r or (2) -R option in rm in Solaris 8 through 10 before 20070208 allows local users to delete files and directories as the user running rm by moving a low-level directory to a higher level as it is being deleted, which causes rm to chdir to a ".." directory that is higher than expected, possibly up to the root file system, a related issue to CVE-2002-0435.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-06T11:50:11.000-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </submitted>
            <status_change date="2007-08-08T21:33:23.977-04:00">DRAFT</status_change>
            <status_change date="2007-08-23T14:55:19.959-04:00">INTERIM</status_change>
            <status_change date="2007-09-10T14:45:27.362-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102782" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 124969-01 or later installed" test_ref="oval:org.mitre.oval:tst:4414" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102782" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 123372-02 or later installed" test_ref="oval:org.mitre.oval:tst:4946" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102782" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 124244-01 or later installed" test_ref="oval:org.mitre.oval:tst:4215" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102782" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 124970-01 or later installed" test_ref="oval:org.mitre.oval:tst:4906" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102782" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 123373-02 or later installed" test_ref="oval:org.mitre.oval:tst:5133" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102782" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 124245-01 or later installed" test_ref="oval:org.mitre.oval:tst:4576" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:7973" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Transport Layer Security (TLS) and Secure Sockets Layer 3.0 (SSLv3) Protocols Involving Handshake Renegotiation Affects Applications Utilizing Network Security Services (NSS)</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-3555" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3555"/>
        <description>The TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in Microsoft Internet Information Services (IIS) 7.0, mod_ssl in the Apache HTTP Server 2.2.14 and earlier, OpenSSL before 0.9.8l, GnuTLS 2.8.5 and earlier, Mozilla Network Security Services (NSS) 3.12.4 and earlier, multiple Cisco products, and other products, does not properly associate renegotiation handshakes with an existing connection, which allows man-in-the-middle attackers to insert data into HTTPS sessions, and possibly other types of sessions protected by TLS or SSL, by sending an unauthenticated request that is processed retroactively by a server in a post-renegotiation context, related to a "plaintext injection" attack, aka the "Project Mogul" issue.</description>
        <oval_repository>
          <dates>
            <submitted date="2010-01-19T17:52:34.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2010-01-21T10:09:08.599-05:00">DRAFT</status_change>
            <status_change date="2010-02-08T04:02:19.988-05:00">INTERIM</status_change>
            <status_change date="2010-03-01T04:00:13.620-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 273350">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 119209-22 or later installed" test_ref="oval:org.mitre.oval:tst:20450"/>
          <criterion comment="SUNWtls is installed" test_ref="oval:org.mitre.oval:tst:20907"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 273350">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 119211-22 or later installed" test_ref="oval:org.mitre.oval:tst:21074"/>
          <criterion comment="SUNWtls is installed" test_ref="oval:org.mitre.oval:tst:20907"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 273350">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 119213-21 or later installed" test_ref="oval:org.mitre.oval:tst:20949"/>
          <criterion comment="SUNWtls is installed" test_ref="oval:org.mitre.oval:tst:20907"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 273350">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 119212-22 or later installed" test_ref="oval:org.mitre.oval:tst:21052"/>
          <criterion comment="SUNWtls is installed" test_ref="oval:org.mitre.oval:tst:20907"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 273350">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 119214-21 or later installed" test_ref="oval:org.mitre.oval:tst:20806"/>
          <criterion comment="SUNWtls is installed" test_ref="oval:org.mitre.oval:tst:20907"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:7779" version="2" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in GNU tar (see gtar(1)) May Lead to Files Being Overwritten, Execution of Arbitrary Code, or a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4131" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4131"/>
        <description>Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.</description>
        <oval_repository>
          <dates>
            <submitted date="2010-03-26T14:24:08.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2010-03-26T14:56:04.503-04:00">DRAFT</status_change>
            <status_change date="2010-05-17T04:01:03.879-04:00">INTERIM</status_change>
            <status_change date="2010-06-07T04:00:50.880-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 273551">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 118191-04 or later installed" test_ref="oval:org.mitre.oval:tst:21169"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 273551">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 139099-03 or later installed" test_ref="oval:org.mitre.oval:tst:20999"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 273551">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 118192-04 or later installed" test_ref="oval:org.mitre.oval:tst:21124"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 273551">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 139100-03 or later installed" test_ref="oval:org.mitre.oval:tst:21085"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:765" version="3" class="vulnerability">
      <metadata>
        <title>GNU GZip CHMod File Permission Modification Race ConditionWeakness</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>gzip</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0988" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0988"/>
        <description>Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:53.441-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:16:00.590-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:47:00.641-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:48:04.662-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:27.180-04:00">ACCEPTED</status_change>
            <modified comment="Corrected sparc criterion that was intended to be x86." date="2009-07-17T11:09:00.290-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </modified>
            <status_change date="2009-07-17T11:19:33.298-04:00">INTERIM</status_change>
            <status_change date="2009-08-03T04:00:04.095-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112668-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4005"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112669-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4070"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 116340-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3666"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 116341-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3778"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120719-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3295"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 120720-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3621"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:755" version="2" class="vulnerability">
      <metadata>
        <title>Sun Java System Access Manager Local Authentication Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <platform>Sun Solaris 9</platform>
          <product>Access Manager</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0531" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0531"/>
        <description>Unspecified vulnerability in Sun Java System Access Manager 7.0 allows local users logged in as "root" to bypass authentication and gain top-level administrator privileges via the amadmin CLI tool.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:53.102-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:16:00.406-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:52:00.016-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:53:06.046-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:26.994-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="x86" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
        <criterion comment="Sun Java System Access Manager 7 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3551"/>
        <criterion comment="Patch 120955-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3363"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:7459" version="3" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in BIND DNS Software Shipped With Solaris May Allow DNS Cache Poisoning</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-4022" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4022"/>
        <description>Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P4, 9.5 before 9.5.2-P1, 9.6 before 9.6.1-P2, and 9.7 beta before 9.7.0b3, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains an Additional section with crafted data, which is not properly handled when the response is processed "at the same time as requesting DNSSEC records (DO)," aka Bug 20438.</description>
        <oval_repository>
          <dates>
            <submitted date="2010-05-03T13:51:32.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2010-05-05T11:43:54.594-04:00">DRAFT</status_change>
            <status_change date="2010-05-24T04:00:04.610-04:00">INTERIM</status_change>
            <status_change date="2010-06-14T04:00:54.759-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 273169">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 112837-21 or later installed" test_ref="oval:org.mitre.oval:tst:10994"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 273169">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 119783-14 or later installed" test_ref="oval:org.mitre.oval:tst:11625"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 273169">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 114265-20 or later installed" test_ref="oval:org.mitre.oval:tst:11199"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 273169">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 119784-14 or later installed" test_ref="oval:org.mitre.oval:tst:11385"/>
          </criteria>
        </criteria>
        <criterion comment="in.named running" test_ref="oval:org.mitre.oval:tst:2624"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:7430" version="3" class="vulnerability">
      <metadata>
        <title>A vulnerability in the way named(1M) handles recursive client queries may allow a remote unprivileged user to cause named(1M) to return NXDOMAIN (Non-Existent Domain) for Internet hosts thus causing a Denial of Service (DoS) for those hosts to end users</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2010-0097" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0097"/>
        <description>ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta does not properly validate DNSSEC (1) NSEC and (2) NSEC3 records, which allows remote attackers to add the Authenticated Data (AD) flag to a forged NXDOMAIN response for an existing domain.</description>
        <oval_repository>
          <dates>
            <submitted date="2010-05-03T13:51:32.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2010-05-05T11:43:55.135-04:00">DRAFT</status_change>
            <status_change date="2010-05-24T04:00:04.262-04:00">INTERIM</status_change>
            <status_change date="2010-06-14T04:00:52.110-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 275890">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 112837-21 or later installed" test_ref="oval:org.mitre.oval:tst:11747"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 275890">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 119783-15 or later installed" test_ref="oval:org.mitre.oval:tst:11052"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 275890">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 114265-20 or later installed" test_ref="oval:org.mitre.oval:tst:11705"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 275890">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 119784-15 or later installed" test_ref="oval:org.mitre.oval:tst:11409"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration Section">
          <criterion comment="in.named running" test_ref="oval:org.mitre.oval:tst:2624"/>
          <criterion comment="Server is configured as DNSSEC-validating nameserver (trusted-keys is set in /etc/named.conf)" test_ref="oval:org.mitre.oval:tst:11254"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:736" version="2" class="vulnerability">
      <metadata>
        <title>MIT Kerberos 5 Key Distribution Center Remote Denial of Service Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Kerberos</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1175" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1175"/>
        <description>Heap-based buffer overflow in the Key Distribution Center (KDC) in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to cause a denial of service (apllication crash) and possibly execute arbitrary code via a certain valid TCP or UDP request.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:52.863-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:16:00.079-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:02:00.285-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:04:28.310-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:25.886-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112536-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3209"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112537-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3424"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112237-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3567"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112238-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3898"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) with Supplmental Encryption Packages meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criteria operator="OR" comment="Solaris Supplemental Encryption Packages are installed" negate="false">
            <criterion comment="Pkg SUNWcry (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3198"/>
            <criterion comment="Pkg SUNWcryr (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3694"/>
          </criteria>
          <criterion comment="Patch 112390-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3640"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) with Supplmental Encryption Packages meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criteria operator="OR" comment="Solaris Supplemental Encryption Packages are installed" negate="false">
            <criterion comment="Pkg SUNWcry (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3198"/>
            <criterion comment="Pkg SUNWcryr (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3694"/>
          </criteria>
          <criterion comment="Patch 112240-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3497"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112908-20 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3389"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 115168-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3624"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120469-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3561"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 120470-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3418"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:724" version="4" class="vulnerability">
      <metadata>
        <title>MIT Kerberos 5 KRB5_AName_To_Localname Multiple Principal Name Buffer Overrun Vulnerabilities</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 7</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0523" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0523"/>
        <description>Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:52.045-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:59.217-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:49:00.749-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:50:17.774-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:25.042-04:00">ACCEPTED</status_change>
            <modified comment="EDITED oval:org.mitre.oval:def:724 - Various corrections to comments and products to align with Authoring Style Guide" date="2011-04-22T23:54:00.899-04:00">
              <contributor organization="G2, Inc.">Shane Shaffer</contributor>
            </modified>
            <status_change date="2011-04-23T00:04:51.141-04:00">INTERIM</status_change>
            <status_change date="2011-05-09T04:01:44.632-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software section">
          <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101512 criteria.">
            <criterion comment="Solaris 7 Installed" test_ref="oval:org.mitre.oval:tst:3576"/>
            <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion negate="true" comment="Patch 112536-05 or later installed" test_ref="oval:org.mitre.oval:tst:3544"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101512 criteria.">
            <criterion comment="Solaris 7 Installed" test_ref="oval:org.mitre.oval:tst:3576"/>
            <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion negate="true" comment="Patch 112537-05 or later installed" test_ref="oval:org.mitre.oval:tst:3498"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101512 criteria.">
            <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion negate="true" comment="Patch 112237-11 or later installed" test_ref="oval:org.mitre.oval:tst:3354"/>
            <criterion negate="true" comment="Patch 112390-09 or later installed" test_ref="oval:org.mitre.oval:tst:3509"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101512 criteria.">
            <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion negate="true" comment="Patch 112240-08 or later installed" test_ref="oval:org.mitre.oval:tst:3366"/>
            <criterion negate="true" comment="Patch 112238-10 or later installed" test_ref="oval:org.mitre.oval:tst:4043"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101512 criteria.">
            <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion negate="true" comment="Patch 112908-15 or later installed" test_ref="oval:org.mitre.oval:tst:3824"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101512 criteria.">
            <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion negate="true" comment="Patch 115168-05 or later installed" test_ref="oval:org.mitre.oval:tst:4066"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Configuration section">
          <criteria operator="OR" comment="Target's configuration meets 101512 configuration criteria.">
            <criteria operator="OR" comment="Solaris Enterprise Authentication Mechanism (ANY SUNWkr5sl/SUNWkr5sv/SUNWkrgdo/SUNWkrggl)">
              <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sv) installed" test_ref="oval:org.mitre.oval:tst:3514"/>
              <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sl) installed" test_ref="oval:org.mitre.oval:tst:3192"/>
              <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrgdo) installed" test_ref="oval:org.mitre.oval:tst:3873"/>
              <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrggl) installed" test_ref="oval:org.mitre.oval:tst:3369"/>
            </criteria>
            <criteria operator="AND" comment="SEAM is not installed, but target is a kerberos client.">
              <criteria negate="true" operator="OR" comment="Solaris Enterprise Authentication Mechanism (ANY SUNWkr5sl/SUNWkr5sv/SUNWkrgdo/SUNWkrggl)">
                <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sv) installed" test_ref="oval:org.mitre.oval:tst:3514"/>
                <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sl) installed" test_ref="oval:org.mitre.oval:tst:3192"/>
                <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrgdo) installed" test_ref="oval:org.mitre.oval:tst:3873"/>
                <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrggl) installed" test_ref="oval:org.mitre.oval:tst:3369"/>
              </criteria>
              <criterion comment="/etc/krb5/krb5.conf is configured as a kerberos client" test_ref="oval:org.mitre.oval:tst:3487"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:702" version="3" class="vulnerability">
      <metadata>
        <title>Solaris Privilege Escalation/DoS Vulnerability (6293270)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0190" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0190"/>
        <description>Unspecified vulnerability in Sun Solaris 9 and 10 for the x86 platform allows local users to gain privileges or cause a denial of service (panic) via unspecified vectors, possibly involving functions from the mm driver.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-12T11:25:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-25T07:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
            <modified comment="EDITED oval:org.mitre.oval:def:702 - Various corrections to comments and products to align with Authoring Style Guide" date="2011-04-22T23:54:00.899-04:00">
              <contributor organization="G2, Inc.">Shane Shaffer</contributor>
            </modified>
            <status_change date="2011-04-23T00:06:50.977-04:00">INTERIM</status_change>
            <status_change date="2011-05-09T04:01:43.069-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102066 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criteria operator="OR" comment="Contributing factors for Solaris 9, Sun Alert ID 102066 criteria.">
            <criterion comment="Patch 112234-11 is installed" test_ref="oval:org.mitre.oval:tst:2413"/>
            <criterion comment="Patch 112234-12 is installed" test_ref="oval:org.mitre.oval:tst:2412"/>
            <criterion comment="Patch 117172-16 or later installed" test_ref="oval:org.mitre.oval:tst:2411"/>
          </criteria>
          <criterion negate="true" comment="Patch 118559-19 or later installed" test_ref="oval:org.mitre.oval:tst:2410"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102066 and 102108 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion negate="true" comment="Patch 118844-24 or later installed" test_ref="oval:org.mitre.oval:tst:2409"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:662" version="4" class="vulnerability">
      <metadata>
        <title>lpsched Local System Corruption Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0227" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0227"/>
        <description>Multiple unspecified vulnerabilities in lpsched in Sun Solaris 8, 9, and 10 allow local users to delete arbitrary files or disable the LP print service via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-16T12:05:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-25T07:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
            <modified comment="Fixed obj:1394 to more correctly look for subdirectories under /etc/lp/printers." date="2007-01-22T16:00:00.391-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-01-22T16:01:01.488-05:00">INTERIM</status_change>
            <status_change date="2007-02-20T13:40:51.556-05:00">ACCEPTED</status_change>
            <modified comment="EDITED oval:org.mitre.oval:def:662 - Various corrections to comments and products to align with Authoring Style Guide" date="2011-04-22T23:54:00.899-04:00">
              <contributor organization="G2, Inc.">Shane Shaffer</contributor>
            </modified>
            <status_change date="2011-04-23T00:05:54.814-04:00">INTERIM</status_change>
            <status_change date="2011-05-09T04:01:39.926-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Installed architecture is sparc" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion negate="true" comment="Patch 109320-17 or later installed" test_ref="oval:org.mitre.oval:tst:2464"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion negate="true" comment="Patch 109321-17 or later installed" test_ref="oval:org.mitre.oval:tst:2462"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Installed architecture is sparc" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion negate="true" comment="Patch 113329-16 or later installed" test_ref="oval:org.mitre.oval:tst:2461"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion negate="true" comment="Patch 114980-17 or later installed" test_ref="oval:org.mitre.oval:tst:2460"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (sparc) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="Installed architecture is sparc" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion negate="true" comment="Patch 120467-03 or later installed" test_ref="oval:org.mitre.oval:tst:2458"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion negate="true" comment="Patch 120468-03 or later installed" test_ref="oval:org.mitre.oval:tst:2457"/>
        </criteria>
        <criterion comment="Target is configured as a print server" test_ref="oval:org.mitre.oval:tst:2456"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6331" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the Solaris rpc.nisd(1M) Daemon may Cause a Denial of Service (DoS) Condition to a NIS+ Server</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-2029" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2029"/>
        <description>Unspecified vulnerability in rpc.nisd in Sun Solaris 8 through 10, and OpenSolaris before snv_104, allows remote authenticated users to cause a denial of service (NIS+ daemon hang) via unspecified vectors related to NIS+ callbacks.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-06-23T12:21:57.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-06-30T10:48:13.719-04:00">DRAFT</status_change>
            <status_change date="2009-07-20T04:00:44.613-04:00">INTERIM</status_change>
            <status_change date="2009-08-10T04:00:08.560-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 8 and 9">
          <criteria operator="OR" comment="Solaris 8 and 9 software section">
            <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 256748">
              <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
              <criterion negate="true" comment="Patch 128624-09 or later installed" test_ref="oval:org.mitre.oval:tst:9596"/>
            </criteria>
            <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 256748">
              <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
              <criterion negate="true" comment="Patch 112960-65 or later installed" test_ref="oval:org.mitre.oval:tst:9856"/>
            </criteria>
            <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 256748">
              <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
              <criterion negate="true" comment="Patch 128625-09 or later installed" test_ref="oval:org.mitre.oval:tst:10082"/>
            </criteria>
            <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 256748">
              <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
              <criterion negate="true" comment="Patch 114242-50 or later installed" test_ref="oval:org.mitre.oval:tst:9784"/>
            </criteria>
          </criteria>
          <criterion comment="rpc.nisd service is running" test_ref="oval:org.mitre.oval:tst:10097"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10">
          <criteria operator="OR" comment="Solaris 10 software section">
            <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 256748">
              <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
              <criterion negate="true" comment="Patch 140917-01 or later installed" test_ref="oval:org.mitre.oval:tst:10226"/>
            </criteria>
            <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 256748">
              <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
              <criterion negate="true" comment="Patch 140918-01 or later installed" test_ref="oval:org.mitre.oval:tst:10054"/>
            </criteria>
          </criteria>
          <criterion comment="rpc.nisd service is running" test_ref="oval:org.mitre.oval:tst:10027"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6256" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in Solaris 9 fstat(2) System Call May Lead to a System Panic, Resulting in a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-1673" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1673"/>
        <description>The kernel in Sun Solaris 9 allows local users to cause a denial of service (panic) by calling fstat with a first argument of AT_FDCWD.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-05-20T10:58:53.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-05-27T17:29:30.743-04:00">DRAFT</status_change>
            <status_change date="2009-06-15T04:01:13.061-04:00">INTERIM</status_change>
            <status_change date="2009-07-06T04:00:49.860-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 257988">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 122300-40 or later installed" test_ref="oval:org.mitre.oval:tst:9907"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 257988">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 122301-40 or later installed" test_ref="oval:org.mitre.oval:tst:10040"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6234" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in the libxml2 Library Routines xmlBufferResize() May Lead to Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-4225" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4225"/>
        <description>Integer overflow in the xmlBufferResize function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (infinite loop) via a large XML document.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-02-13T15:56:00.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-02-13T17:01:31.147-05:00">DRAFT</status_change>
            <status_change date="2009-03-02T04:00:28.318-05:00">INTERIM</status_change>
            <status_change date="2009-03-23T04:00:21.781-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 240546">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114014-22 or later installed" test_ref="oval:org.mitre.oval:tst:9654"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 240546">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 125731-04 or later installed" test_ref="oval:org.mitre.oval:tst:8710"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 240546">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114015-22 or later installed" test_ref="oval:org.mitre.oval:tst:9487"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 240546">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 125732-04 or later installed" test_ref="oval:org.mitre.oval:tst:9600"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6225" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the Solaris Print Service (in.lpd(1M)) May Lead to a Denial of Service (DoS) Condition</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-2972" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2972"/>
        <description>in.lpd in the print service in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors that trigger a "fork()/exec() bomb."</description>
        <oval_repository>
          <dates>
            <submitted date="2009-08-28T12:11:40.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-08-28T20:32:58.712-04:00">DRAFT</status_change>
            <status_change date="2009-09-14T04:00:08.792-04:00">INTERIM</status_change>
            <status_change date="2009-10-05T04:00:05.585-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 264608">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 109320-23 or later installed" test_ref="oval:org.mitre.oval:tst:10451"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 264608">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 113329-07 or later installed" test_ref="oval:org.mitre.oval:tst:10764"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 264608">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 109321-23 or later installed" test_ref="oval:org.mitre.oval:tst:10134"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 264608">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114980-09 or later installed" test_ref="oval:org.mitre.oval:tst:10602"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:622" version="6" class="vulnerability">
      <metadata>
        <title>Solaris 8, 9, 10 Blind Connection Reset Attack Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0790" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0790"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the "blind connection-reset attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:50.491-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:58.160-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:46:00.662-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:47:31.744-05:00">INTERIM</status_change>
            <modified comment="Standardized title." date="2007-02-26T01:01:00.306-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-03-21T16:17:22.881-04:00">ACCEPTED</status_change>
            <modified comment="Added missing patch checks." date="2007-06-26T10:59:00.754-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </modified>
            <status_change date="2007-06-26T11:00:29.787-04:00">INTERIM</status_change>
            <status_change date="2007-07-11T15:17:33.358-04:00">ACCEPTED</status_change>
            <modified comment="EDITED oval:org.mitre.oval:def:622 - Various corrections to comments and products to align with Authoring Style Guide" date="2011-04-22T23:54:00.899-04:00">
              <contributor organization="G2, Inc.">Shane Shaffer</contributor>
            </modified>
            <status_change date="2011-04-23T00:06:42.080-04:00">INTERIM</status_change>
            <status_change date="2011-05-09T04:01:38.771-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion negate="true" comment="Patch 116965-19 or later installed" test_ref="oval:org.mitre.oval:tst:4028"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion negate="true" comment="Patch 116966-18 or later installed" test_ref="oval:org.mitre.oval:tst:4069"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion negate="true" comment="Patch 118305-08 or later installed" test_ref="oval:org.mitre.oval:tst:3204"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion negate="true" comment="Patch 117470-07 or later installed" test_ref="oval:org.mitre.oval:tst:4114"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion negate="true" comment="Patch 118822-27 or later installed" test_ref="oval:org.mitre.oval:tst:3505"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion negate="true" comment="Patch 118844-28 or later installed" test_ref="oval:org.mitre.oval:tst:3302"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6219" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in the libxml2 Library Routines xmlSAX2Characters() May Lead to Arbitrary Code Execution or Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-4226" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4226"/>
        <description>Integer overflow in the xmlSAX2Characters function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a large XML document.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-02-13T15:56:00.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-02-13T17:01:31.658-05:00">DRAFT</status_change>
            <status_change date="2009-03-02T04:00:27.722-05:00">INTERIM</status_change>
            <status_change date="2009-03-23T04:00:21.430-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 240546">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114014-22 or later installed" test_ref="oval:org.mitre.oval:tst:9654"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 240546">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 125731-04 or later installed" test_ref="oval:org.mitre.oval:tst:8710"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 240546">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114015-22 or later installed" test_ref="oval:org.mitre.oval:tst:9487"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 240546">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 125732-04 or later installed" test_ref="oval:org.mitre.oval:tst:9600"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6183" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the Solaris dircmp(1) Shell Script may Allow Overwriting of Arbitrary Files</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-1207" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1207"/>
        <description>Race condition in the dircmp script in Sun Solaris 8 through 10, and OpenSolaris snv_01 through snv_111, allows local users to overwrite arbitrary files, probably involving a symlink attack on temporary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-04-02T11:13:52.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-04-08T14:20:08.844-04:00">DRAFT</status_change>
            <status_change date="2009-04-27T04:00:15.946-04:00">INTERIM</status_change>
            <status_change date="2009-05-18T04:00:26.719-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 253468">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 140837-01 or later installed" test_ref="oval:org.mitre.oval:tst:9742"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 253468">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 138896-01 or later installed" test_ref="oval:org.mitre.oval:tst:9760"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 253468">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 141014-01 or later installed" test_ref="oval:org.mitre.oval:tst:9632"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 253468">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 140838-01 or later installed" test_ref="oval:org.mitre.oval:tst:9652"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 253468">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 138897-01 or later installed" test_ref="oval:org.mitre.oval:tst:9731"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 253468">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 141015-01 or later installed" test_ref="oval:org.mitre.oval:tst:9537"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6168" version="1" class="vulnerability">
      <metadata>
        <title>Race Condition Security Vulnerability in Solaris Auditing Related to Extended File Attributes May Allow Local Unprivileged Users to Panic the System</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-2644" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2644"/>
        <description>Race condition in the Solaris Auditing subsystem in Sun Solaris 9 and 10 and OpenSolaris before snv_121, when extended file attributes are used, allows local users to cause a denial of service (panic) via vectors related to "pathnames for invalid fds."</description>
        <oval_repository>
          <dates>
            <submitted date="2009-08-10T16:40:08.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-08-12T09:49:57.004-04:00">DRAFT</status_change>
            <status_change date="2009-08-31T04:00:08.660-04:00">INTERIM</status_change>
            <status_change date="2009-09-21T04:00:05.908-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 264429">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 122300-42 or later installed" test_ref="oval:org.mitre.oval:tst:10143"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 264429">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 140921-02 or later installed" test_ref="oval:org.mitre.oval:tst:10518"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 264429">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 122301-42 or later installed" test_ref="oval:org.mitre.oval:tst:10507"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 264429">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 140922-02 or later installed" test_ref="oval:org.mitre.oval:tst:9991"/>
          </criteria>
        </criteria>
        <criterion comment="Solaris Auditing is enabled" test_ref="oval:org.mitre.oval:tst:10368"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6152" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Solaris Kernel Involving the Interaction of the Filesystem and Virtual Memory Subsystems</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-2857" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2857"/>
        <description>The kernel in Sun Solaris 8, 9, and 10, and OpenSolaris before snv_103, does not properly handle interaction between the filesystem and virtual-memory implementations, which allows local users to cause a denial of service (deadlock and system halt) via vectors involving mmap and write operations on the same file.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-08-21T11:07:35.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-08-21T20:56:31.695-04:00">DRAFT</status_change>
            <status_change date="2009-09-07T04:00:11.548-04:00">INTERIM</status_change>
            <status_change date="2009-09-28T04:00:15.555-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 257848">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 127721-02 or later installed" test_ref="oval:org.mitre.oval:tst:10639"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 257848">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 122300-41 or later installed" test_ref="oval:org.mitre.oval:tst:10603"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 257848">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 139555-08 or later installed" test_ref="oval:org.mitre.oval:tst:9767"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 257848">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 127722-02 or later installed" test_ref="oval:org.mitre.oval:tst:10324"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 257848">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 122301-41 or later installed" test_ref="oval:org.mitre.oval:tst:10053"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 257848">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 139556-08 or later installed" test_ref="oval:org.mitre.oval:tst:10254"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6136" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Simple Authentication and Security Layer (SASL) Library Bundled with the Java Enterprise System (JES) may Allow Unprivileged Users to Crash Applications Using the sasl_encode64 Function</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-0688" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0688"/>
        <description>Multiple buffer overflows in the CMU Cyrus SASL library before 2.1.23 might allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via strings that are used as input to the sasl_encode64 function in lib/saslutil.c.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-07-28T11:14:39.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-07-30T17:45:06.789-04:00">DRAFT</status_change>
            <status_change date="2009-08-17T04:00:03.181-04:00">INTERIM</status_change>
            <status_change date="2009-09-07T04:00:11.189-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 264248">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion negate="true" comment="Patch 115328-08 or later installed" test_ref="oval:org.mitre.oval:tst:10445"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 264248">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 115342-08 or later installed" test_ref="oval:org.mitre.oval:tst:10367"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 264248">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 119345-07 or later installed" test_ref="oval:org.mitre.oval:tst:10193"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 264248">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 115343-08 or later installed" test_ref="oval:org.mitre.oval:tst:10455"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 264248">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 119346-07 or later installed" test_ref="oval:org.mitre.oval:tst:9898"/>
          </criteria>
        </criteria>
        <criterion comment="SUNWsasl is installed" test_ref="oval:org.mitre.oval:tst:9482"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6116" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability with IKE Packet Handling in Solaris libike Library may Lead to a Crash of in.iked(1M)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-0267" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0267"/>
        <description>libike in Sun Solaris 9 and 10, and OpenSolaris before snv_100, does not properly check packets, which allows remote attackers to cause a denial of service (in.iked daemon crash) via an unspecified IKE packet, a different vulnerability than CVE-2007-2989.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-01-28T11:08:21.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-01-30T18:16:31.359-05:00">DRAFT</status_change>
            <status_change date="2009-02-16T04:00:26.978-05:00">INTERIM</status_change>
            <status_change date="2009-03-09T04:00:11.155-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 247406">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 113451-15 or later installed" test_ref="oval:org.mitre.oval:tst:9566"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 247406">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 140196-01 or later installed" test_ref="oval:org.mitre.oval:tst:8940"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 247406">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 114435-14 or later installed" test_ref="oval:org.mitre.oval:tst:9611"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 247406">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 140414-01 or later installed" test_ref="oval:org.mitre.oval:tst:8709"/>
          </criteria>
        </criteria>
        <criterion comment="File /etc/inet/ike/config exists" test_ref="oval:org.mitre.oval:tst:9478"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6094" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in GNU tar May Lead to Arbitrary Code Execution or Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0300" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0300"/>
        <description>Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute code via unspecified vectors involving PAX extended headers.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-04-30T11:23:00.000-04:00">
              <contributor organization="Hewlett-Packard">Michael Wood</contributor>
            </submitted>
            <status_change date="2009-05-07T11:17:30.107-04:00">DRAFT</status_change>
            <status_change date="2009-05-25T04:01:59.363-04:00">INTERIM</status_change>
            <status_change date="2009-06-15T04:01:00.185-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 241646">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 118192-02 or later installed" test_ref="oval:org.mitre.oval:tst:10043"/>
          <criterion comment="Patch 118192-01 or later installed" test_ref="oval:org.mitre.oval:tst:10160"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6092" version="3" class="vulnerability">
      <metadata>
        <title>Integer Overflow Vulnerability in the Solaris 8 and 9 sadmind(1M) Daemon May Lead to Arbitrary Code Execution</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3870" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3870"/>
        <description>Integer overflow in sadmind in Sun Solaris 8 and 9 allows remote attackers to execute arbitrary code via a crafted RPC request that triggers a heap-based buffer overflow, related to improper memory allocation.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-05-28T13:34:47.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-06-05T14:12:44.849-04:00">DRAFT</status_change>
            <status_change date="2009-06-22T04:00:27.049-04:00">INTERIM</status_change>
            <status_change date="2009-07-13T04:00:47.597-04:00">ACCEPTED</status_change>
            <modified comment="Fixed incorrect user_id element value in process_state.  Incorrect value was 'root', updated to value of '0'." date="2010-09-02T15:11:00.501-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T15:13:53.660-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:32.984-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 259468">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion negate="true" comment="Patch 116455-02 or later installed" test_ref="oval:org.mitre.oval:tst:9833"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 259468">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 116453-03 or later installed" test_ref="oval:org.mitre.oval:tst:9695"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 259468">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion negate="true" comment="Patch 116442-02 or later installed" test_ref="oval:org.mitre.oval:tst:10038"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 259468">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 116454-03 or later installed" test_ref="oval:org.mitre.oval:tst:10171"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Configuration Section">
          <criterion comment="inetd running" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criterion comment="inetd.conf contains sadmind" test_ref="oval:org.mitre.oval:tst:1023"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6088" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the Solaris ip(7P) Kernel Module's IP-in-IP Packet Processing May Lead to a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-0346" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0346"/>
        <description>The IP-in-IP packet processing implementation in the IPsec and IP stacks in the kernel in Sun Solaris 9 and 10, and OpenSolaris snv_01 though snv_85, allows local users to cause a denial of service (panic) via a self-encapsulated packet that lacks IPsec protection.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-02-05T13:18:38.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-02-06T15:58:53.969-05:00">DRAFT</status_change>
            <status_change date="2009-02-23T04:00:23.036-05:00">INTERIM</status_change>
            <status_change date="2009-03-16T04:00:16.923-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 240086">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114344-38 or later installed" test_ref="oval:org.mitre.oval:tst:9675"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 240086">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 138888-03 or later installed" test_ref="oval:org.mitre.oval:tst:8820"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 240086">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 119435-26 or later installed" test_ref="oval:org.mitre.oval:tst:9614"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 240086">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 138889-03 or later installed" test_ref="oval:org.mitre.oval:tst:9254"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6085" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in Solaris SSH May Allow Unauthorized Access to X11 Sessions</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1483" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1483"/>
        <description>OpenSSH 4.3p2, and probably other versions, allows local users to hijack forwarded X connections by causing ssh to set DISPLAY to :10, even when another process is listening on the associated port, as demonstrated by opening TCP port 6010 (IPv4) and sniffing a cookie sent by Emacs.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-08-25T11:33:40.000-04:00">
              <contributor organization="Hewlett-Packard">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2008-08-28T14:12:27.939-04:00">DRAFT</status_change>
            <status_change date="2008-09-15T04:00:28.608-04:00">INTERIM</status_change>
            <status_change date="2008-10-06T04:00:20.232-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 237444">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 114356-14 or later installed" test_ref="oval:org.mitre.oval:tst:9096"/>
            <criterion comment="X11Forwarding is enabled" test_ref="oval:org.mitre.oval:tst:9067"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 237444">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 114357-13 or later installed" test_ref="oval:org.mitre.oval:tst:9157"/>
            <criterion comment="X11Forwarding is enabled" test_ref="oval:org.mitre.oval:tst:9067"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 237444">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 126133-03 or later installed" test_ref="oval:org.mitre.oval:tst:9197"/>
            <criterion negate="true" comment="X11Forwarding is not enabled" test_ref="oval:org.mitre.oval:tst:9165"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 237444">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 126134-03 or later installed" test_ref="oval:org.mitre.oval:tst:9048"/>
            <criterion negate="true" comment="X11Forwarding is not enabled" test_ref="oval:org.mitre.oval:tst:9165"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration Section">
          <criterion comment="sshd running" test_ref="oval:org.mitre.oval:tst:484"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6061" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Solaris Pseudo-terminal Driver (pty(7D)) may Cause a System Panic</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-0268" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0268"/>
        <description>Race condition in the pseudo-terminal (aka pty) driver module in Sun Solaris 8 through 10, and OpenSolaris before snv_103, allows local users to cause a denial of service (panic) via unspecified vectors related to lack of "properly sequenced code" in ptc and ptsl.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-01-28T11:08:21.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-01-30T18:16:32.895-05:00">DRAFT</status_change>
            <status_change date="2009-02-16T04:00:26.165-05:00">INTERIM</status_change>
            <status_change date="2009-03-09T04:00:10.700-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 249586">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 113685-07 or later installed" test_ref="oval:org.mitre.oval:tst:9513"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 249586">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 140426-01 or later installed" test_ref="oval:org.mitre.oval:tst:9267"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 249586">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 140383-01 or later installed" test_ref="oval:org.mitre.oval:tst:9659"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 249586">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 113686-06 or later installed" test_ref="oval:org.mitre.oval:tst:9438"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 249586">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 140427-01 or later installed" test_ref="oval:org.mitre.oval:tst:9498"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 249586">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 140384-01 or later installed" test_ref="oval:org.mitre.oval:tst:9523"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6038" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Solaris IP(7p) Implementation, Related to Minor Number Allocation, may Lead to a Denial of Service (DoS) Condition</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-0480" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0480"/>
        <description>The IP implementation in Sun Solaris 8 through 10, and OpenSolaris before snv_82, uses an improper arena when allocating minor numbers for sockets, which allows local users to cause a denial of service (32-bit application failure and login outage) by opening a large number of sockets.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-02-10T11:19:01.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-02-13T17:01:54.282-05:00">DRAFT</status_change>
            <status_change date="2009-03-02T04:00:19.981-05:00">INTERIM</status_change>
            <status_change date="2009-03-23T04:00:16.596-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 248026">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 116965-34 or later installed" test_ref="oval:org.mitre.oval:tst:9631"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 248026">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114344-37 or later installed" test_ref="oval:org.mitre.oval:tst:9582"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 248026">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 138888-01 or later installed" test_ref="oval:org.mitre.oval:tst:9474"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 248026">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 116966-33 or later installed" test_ref="oval:org.mitre.oval:tst:9681"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 248026">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 119435-25 or later installed" test_ref="oval:org.mitre.oval:tst:8868"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 248026">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 138889-01 or later installed" test_ref="oval:org.mitre.oval:tst:9661"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6009" version="1" class="vulnerability">
      <metadata>
        <title>Security vulnerability in the Virtual Host Manager in Tomcat 5.5 bundled with Solaris 9 and Solaris 10 may lead to Cross Site Scripting (XSS).</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1947" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1947"/>
        <description>Cross-site scripting (XSS) vulnerability in Apache Tomcat 5.5.9 through 5.5.26 and 6.0.0 through 6.0.16 allows remote attackers to inject arbitrary web script or HTML via the name parameter (aka the hostname attribute) to host-manager/html/add.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-02-26T10:58:29.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-02-27T16:20:22.124-05:00">DRAFT</status_change>
            <status_change date="2009-03-16T04:00:16.528-04:00">INTERIM</status_change>
            <status_change date="2009-04-06T04:00:18.038-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Software Section">
        <criteria operator="OR">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 251986">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 114016-03 or later installed" test_ref="oval:org.mitre.oval:tst:9634"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 251986">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 122911-15 or later installed" test_ref="oval:org.mitre.oval:tst:9605"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 251986">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 114017-03 or later installed" test_ref="oval:org.mitre.oval:tst:9480"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 251986">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 122912-15 or later installed" test_ref="oval:org.mitre.oval:tst:9406"/>
          </criteria>
        </criteria>
        <criterion comment="SUNWtcatr is installed" test_ref="oval:org.mitre.oval:tst:9550"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6003" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the X Inter Client Exchange Library (libICE) Shipped With Solaris May Allow a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-5684" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5684"/>
        <description>Unspecified vulnerability in the X Inter Client Exchange library (aka libICE) in Sun Solaris 8 through 10 and OpenSolaris before snv_85 allows context-dependent attackers to cause a denial of service (application crash), as demonstrated by a port scan that triggers a segmentation violation in the Gnome session manager (aka gnome-session).</description>
        <oval_repository>
          <dates>
            <submitted date="2009-01-05T16:39:26.000-05:00">
              <contributor organization="Hewlett-Packard">Michael Wood</contributor>
            </submitted>
            <status_change date="2009-01-09T14:23:46.445-05:00">DRAFT</status_change>
            <status_change date="2009-01-26T04:00:20.280-05:00">INTERIM</status_change>
            <status_change date="2009-02-16T04:00:24.753-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 243566">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 119067-11 or later installed" test_ref="oval:org.mitre.oval:tst:9572"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 243566">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 112785-65 or later installed" test_ref="oval:org.mitre.oval:tst:9617"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 243566">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 119059-46 or later installed" test_ref="oval:org.mitre.oval:tst:9472"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 243566">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 119068-11 or later installed" test_ref="oval:org.mitre.oval:tst:9453"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 243566">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 112786-54 or later installed" test_ref="oval:org.mitre.oval:tst:9118"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 243566">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 119060-45 or later installed" test_ref="oval:org.mitre.oval:tst:9264"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5993" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in GNU tar May Lead to Arbitrary Code Execution or Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0300" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0300"/>
        <description>Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute code via unspecified vectors involving PAX extended headers.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-04-30T11:23:00.000-04:00">
              <contributor organization="Hewlett-Packard">Michael Wood</contributor>
            </submitted>
            <status_change date="2009-05-07T11:17:32.738-04:00">DRAFT</status_change>
            <status_change date="2009-05-25T04:01:52.639-04:00">INTERIM</status_change>
            <status_change date="2009-06-15T04:00:54.861-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 241646">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 118191-02 or later installed" test_ref="oval:org.mitre.oval:tst:9793"/>
          <criterion comment="Patch 118191-01 or later installed" test_ref="oval:org.mitre.oval:tst:9763"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5985" version="1" class="vulnerability">
      <metadata>
        <title>Security vulnerability in the HttpServletResponse.sendError method in Tomcat 5.5 bundled with Solaris 9 and Solaris 10 may lead to Cross Site Scripting (XSS).</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1232" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1232"/>
        <description>Cross-site scripting (XSS) vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16 allows remote attackers to inject arbitrary web script or HTML via a crafted string that is used in the message argument to the HttpServletResponse.sendError method.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-02-26T10:58:29.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-02-27T16:20:22.464-05:00">DRAFT</status_change>
            <status_change date="2009-03-16T04:00:16.102-04:00">INTERIM</status_change>
            <status_change date="2009-04-06T04:00:17.059-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Software Section">
        <criteria operator="OR">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 251986">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 114016-03 or later installed" test_ref="oval:org.mitre.oval:tst:9634"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 251986">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 122911-15 or later installed" test_ref="oval:org.mitre.oval:tst:9605"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 251986">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 114017-03 or later installed" test_ref="oval:org.mitre.oval:tst:9480"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 251986">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 122912-15 or later installed" test_ref="oval:org.mitre.oval:tst:9406"/>
          </criteria>
        </criteria>
        <criterion comment="SUNWtcatr is installed" test_ref="oval:org.mitre.oval:tst:9550"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5977" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Solaris "autofs" Kernel Module may Allow a Local Unprivileged User to Execute Arbitrary Code</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-0319" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0319"/>
        <description>Unspecified vulnerability in the autofs module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_108, allows local users to cause a denial of service (autofs mount outage) or possibly gain privileges via vectors related to "xdr processing problems."</description>
        <oval_repository>
          <dates>
            <submitted date="2009-02-05T13:18:38.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-02-06T15:58:55.814-05:00">DRAFT</status_change>
            <status_change date="2009-02-23T04:00:21.897-05:00">INTERIM</status_change>
            <status_change date="2009-03-16T04:00:15.050-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 249966">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion negate="true" comment="Patch 128624-09 or later installed" test_ref="oval:org.mitre.oval:tst:9674"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 249966">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 113318-34 or later installed" test_ref="oval:org.mitre.oval:tst:9559"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 249966">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 139560-01 or later installed" test_ref="oval:org.mitre.oval:tst:9658"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 249966">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion negate="true" comment="Patch 128625-09 or later installed" test_ref="oval:org.mitre.oval:tst:9544"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 249966">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 116053-03 or later installed" test_ref="oval:org.mitre.oval:tst:9593"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 249966">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 139561-01 or later installed" test_ref="oval:org.mitre.oval:tst:8913"/>
          </criteria>
        </criteria>
        <criterion comment="autofs is enabled" test_ref="oval:org.mitre.oval:tst:9385"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5960" version="1" class="vulnerability">
      <metadata>
        <title>SUNRAS Plugin of Gimp Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2356" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2356"/>
        <description>Stack-based buffer overflow in the set_color_table function in sunras.c in the SUNRAS plugin in Gimp 2.2.14 allows user-assisted remote attackers to execute arbitrary code via a crafted RAS file.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-11T11:37:41.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-09-12T12:49:06.257-04:00">DRAFT</status_change>
            <status_change date="2008-09-29T04:00:49.434-04:00">INTERIM</status_change>
            <status_change date="2008-10-20T04:00:28.436-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 201320">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 122212-22 or later installed" test_ref="oval:org.mitre.oval:tst:8701"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 201320">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 121775-01 or later installed" test_ref="oval:org.mitre.oval:tst:9219"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 201320">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 122213-22 or later installed" test_ref="oval:org.mitre.oval:tst:8353"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:592" version="1" class="vulnerability">
      <metadata>
        <title>rwho daemon Code Execution Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Licence Logging Service</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1351" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1351"/>
        <description>Unknown vulnerability in the rwho daemon (in.rwhod) for Solaris 7 through 9 allows remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7 or 8 OR Solaris 9 and Remote Network Server Commands (SUNWrcmds) installed">
            <criteria operator="OR" comment="Solaris 7 or 8 installed">
              <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
              <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            </criteria>
            <criteria operator="AND" comment="Solaris 9 and Remote Network Server Commands (SUNWrcmds) installed">
              <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
              <criterion comment="Remote Network Server Commands - Usr (SUNWrcmds) installed" negate="false" test_ref="oval:org.mitre.oval:tst:2525"/>
            </criteria>
          </criteria>
          <criterion comment="Patch 118239-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2524"/>
          <criterion comment="Patch 116984-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2523"/>
          <criterion comment="Patch 117455-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2522"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="in.rwhod is running" negate="false" test_ref="oval:org.mitre.oval:tst:2521"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5917" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the DNS Protocol May Lead to DNS Cache Poisoning</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1447" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1447"/>
        <description>The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a birthday attack that uses in-bailiwick referrals to conduct cache poisoning against recursive resolvers, related to insufficient randomness of DNS transaction IDs and source ports, aka "DNS Insufficient Socket Entropy Vulnerability" or "the Kaminsky bug."</description>
        <oval_repository>
          <dates>
            <submitted date="2009-08-25T16:38:09.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-08-26T08:16:51.091-04:00">DRAFT</status_change>
            <status_change date="2009-09-14T04:00:06.253-04:00">INTERIM</status_change>
            <status_change date="2009-10-05T04:00:05.186-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 239392">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion negate="true" comment="Patch 109326-23 or later installed" test_ref="oval:org.mitre.oval:tst:10663"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 239392">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 112837-15 or later installed" test_ref="oval:org.mitre.oval:tst:10777"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 239392">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 119783-06 or later installed" test_ref="oval:org.mitre.oval:tst:10241"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 239392">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion negate="true" comment="Patch 109327-23 or later installed" test_ref="oval:org.mitre.oval:tst:10701"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 239392">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 114265-14 or later installed" test_ref="oval:org.mitre.oval:tst:9857"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 239392">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 119784-06 or later installed" test_ref="oval:org.mitre.oval:tst:10275"/>
          </criteria>
        </criteria>
        <criterion comment="in.named running" test_ref="oval:org.mitre.oval:tst:2624"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5884" version="1" class="vulnerability">
      <metadata>
        <title>Manipulated Tag Files used with Solaris Text Editors May Lead to Execution of Arbitrary Code</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-4131" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4131"/>
        <description>Multiple unspecified vulnerabilities in Sun Solaris 8 through 10 allow local users to gain privileges via vectors related to handling of tags with (1) the -t option and (2) the :tag command in the (a) vi, (b) ex, (c) vedit, (d) view, and (e) edit programs.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T10:35:21.000-04:00">
              <contributor organization="Hewlett-Packard">Todd Dolinsky</contributor>
            </submitted>
            <status_change date="2008-09-29T13:59:05.488-04:00">DRAFT</status_change>
            <status_change date="2008-10-20T04:00:24.938-04:00">INTERIM</status_change>
            <status_change date="2008-11-10T04:00:06.583-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 237987">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 110903-08 or later installed" test_ref="oval:org.mitre.oval:tst:8986"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 237987">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 113031-04 or later installed" test_ref="oval:org.mitre.oval:tst:9138"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 237987">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 120830-06 or later installed" test_ref="oval:org.mitre.oval:tst:9109"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 237987">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 110904-08 or later installed" test_ref="oval:org.mitre.oval:tst:9009"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 237987">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 116479-02 or later installed" test_ref="oval:org.mitre.oval:tst:9291"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 237987">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 120831-06 or later installed" test_ref="oval:org.mitre.oval:tst:9137"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5876" version="1" class="vulnerability">
      <metadata>
        <title>Security vulnerability in the RequestDispatcher class in Tomcat 5.5 bundled with Solaris 9 and Solaris 10 may lead to Directory Traversal.</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-2370" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2370"/>
        <description>Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16, when a RequestDispatcher is used, performs path normalization before removing the query string from the URI, which allows remote attackers to conduct directory traversal attacks and read arbitrary files via a .. (dot dot) in a request parameter.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-02-26T10:58:29.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-02-27T16:20:22.715-05:00">DRAFT</status_change>
            <status_change date="2009-03-16T04:00:13.906-04:00">INTERIM</status_change>
            <status_change date="2009-04-06T04:00:13.554-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Software Section">
        <criteria operator="OR">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 251986">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 114016-03 or later installed" test_ref="oval:org.mitre.oval:tst:9634"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 251986">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 122911-15 or later installed" test_ref="oval:org.mitre.oval:tst:9605"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 251986">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 114017-03 or later installed" test_ref="oval:org.mitre.oval:tst:9480"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 251986">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 122912-15 or later installed" test_ref="oval:org.mitre.oval:tst:9406"/>
          </criteria>
        </criteria>
        <criterion comment="SUNWtcatr is installed" test_ref="oval:org.mitre.oval:tst:9550"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5838" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability May Allow Popup Windows to Appear Through the Solaris XScreenSaver Program on Xorg(1) Servers</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-2711" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2711"/>
        <description>XScreenSaver in Sun Solaris 9 and 10, OpenSolaris before snv_120, and X11 6.4.1 for Solaris 8, when the Xorg or Xnewt server is used, allows physically proximate attackers to obtain sensitive information by reading popup windows, which are displayed even when the screen is locked, a different vulnerability than CVE-2009-1276.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-08-10T16:40:08.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-08-12T09:49:58.244-04:00">DRAFT</status_change>
            <status_change date="2009-08-31T04:00:06.335-04:00">INTERIM</status_change>
            <status_change date="2009-09-21T04:00:04.819-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 258928">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion negate="true" comment="Patch 115298-02 or later installed" test_ref="oval:org.mitre.oval:tst:10067"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 258928">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 115158-11 or later installed" test_ref="oval:org.mitre.oval:tst:10579"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 258928">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 120094-23 or later installed" test_ref="oval:org.mitre.oval:tst:10472"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 258928">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion negate="true" comment="Patch 115299-02 or later installed" test_ref="oval:org.mitre.oval:tst:10441"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 258928">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 115159-11 or later installed" test_ref="oval:org.mitre.oval:tst:10429"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 258928">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 120095-23 or later installed" test_ref="oval:org.mitre.oval:tst:10567"/>
          </criteria>
        </criteria>
        <criterion comment="SUNWxwsvr is installed" test_ref="oval:org.mitre.oval:tst:10577"/>
        <criterion comment="The Xorg X server is running" test_ref="oval:org.mitre.oval:tst:1334"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5817" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in DHCP Handling of DHCP Requests May Allow Remote Users to Execute Arbitrary Code or Cause a Denial of the DHCP Service</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-5365" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5365"/>
        <description>Stack-based buffer overflow in the cons_options function in options.c in dhcpd in OpenBSD 4.0 through 4.2, and some other dhcpd implementations based on ISC dhcp-2, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a DHCP request specifying a maximum message size smaller than the minimum IP MTU.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-01-05T16:39:26.000-05:00">
              <contributor organization="Hewlett-Packard">Michael Wood</contributor>
            </submitted>
            <status_change date="2009-01-09T14:23:44.885-05:00">DRAFT</status_change>
            <status_change date="2009-01-26T04:00:15.739-05:00">INTERIM</status_change>
            <status_change date="2009-02-16T04:00:22.825-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 243806">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 109077-21 or later installed" test_ref="oval:org.mitre.oval:tst:9562"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 243806">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 112837-16 or later installed" test_ref="oval:org.mitre.oval:tst:9503"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 243806">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 138876-01 or later installed" test_ref="oval:org.mitre.oval:tst:9282"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 243806">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 109078-21 or later installed" test_ref="oval:org.mitre.oval:tst:9497"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 243806">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114265-15 or later installed" test_ref="oval:org.mitre.oval:tst:9355"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 243806">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 138877-01 or later installed" test_ref="oval:org.mitre.oval:tst:8742"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5802" version="1" class="vulnerability">
      <metadata>
        <title>PCX Plugin of Gimp Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1046" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1046"/>
        <description>Buffer overflow in the kimgio library for KDE 3.4.0 allows remote attackers to execute arbitrary code via a crafted PCX image file.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-11T11:37:41.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-09-12T12:49:06.892-04:00">DRAFT</status_change>
            <status_change date="2008-09-29T04:00:44.977-04:00">INTERIM</status_change>
            <status_change date="2008-10-20T04:00:22.743-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 201320">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 122212-22 or later installed" test_ref="oval:org.mitre.oval:tst:8701"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 201320">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 121775-01 or later installed" test_ref="oval:org.mitre.oval:tst:9219"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 201320">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 122213-22 or later installed" test_ref="oval:org.mitre.oval:tst:8353"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5792" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the Management of Solaris Kerberos (see kerberos(5)) may Lead to a User Denial of Service (DoS) Attack</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-5690" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5690"/>
        <description>The Kerberos credential renewal feature in Sun Solaris 8, 9, and 10, and OpenSolaris build snv_01 through snv_104, allows local users to cause a denial of service (authentication failure) via unspecified vectors related to incorrect cache file permissions, and lack of credential storage by the store_cred function in pam_krb5.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-01-05T16:39:26.000-05:00">
              <contributor organization="Hewlett-Packard">Michael Wood</contributor>
            </submitted>
            <status_change date="2009-01-09T14:23:47.824-05:00">DRAFT</status_change>
            <status_change date="2009-01-26T04:00:13.978-05:00">INTERIM</status_change>
            <status_change date="2009-02-16T04:00:21.959-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 244866">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 109805-19 or later installed" test_ref="oval:org.mitre.oval:tst:9258"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 244866">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 112908-33 or later installed" test_ref="oval:org.mitre.oval:tst:9565"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 244866">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 139478-01 or later installed" test_ref="oval:org.mitre.oval:tst:9246"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 244866">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 109806-19 or later installed" test_ref="oval:org.mitre.oval:tst:9364"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 244866">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 115168-18 or later installed" test_ref="oval:org.mitre.oval:tst:9595"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 244866">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 139479-01 or later installed" test_ref="oval:org.mitre.oval:tst:9348"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5772" version="1" class="vulnerability">
      <metadata>
        <title>PSD Plugin of Gimp vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2949" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2949"/>
        <description>Integer overflow in the seek_to_and_unpack_pixeldata function in the psd.c plugin in Gimp 2.2.15 allows remote attackers to execute arbitrary code via a crafted PSD file that contains a large (1) width or (2) height value.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-11T11:37:41.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-09-12T12:49:07.128-04:00">DRAFT</status_change>
            <status_change date="2008-09-29T04:00:44.579-04:00">INTERIM</status_change>
            <status_change date="2008-10-20T04:00:22.365-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 201320">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 122212-22 or later installed" test_ref="oval:org.mitre.oval:tst:8701"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 201320">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 121775-01 or later installed" test_ref="oval:org.mitre.oval:tst:9219"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 201320">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 122213-22 or later installed" test_ref="oval:org.mitre.oval:tst:8353"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5742" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in Solaris snoop(1M) when Displaying SMB Traffic</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-0965" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0965"/>
        <description>Multiple format string vulnerabilities in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via format string specifiers in an SMB packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-08-11T12:08:06.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-08-14T15:03:06.340-04:00">DRAFT</status_change>
            <status_change date="2008-09-01T04:01:05.820-04:00">INTERIM</status_change>
            <status_change date="2008-09-22T04:00:30.399-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 240101">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 138083-01 or later installed" test_ref="oval:org.mitre.oval:tst:9062"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 240101">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 112915-05 or later installed" test_ref="oval:org.mitre.oval:tst:9103"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 240101">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 108964-11 or later installed" test_ref="oval:org.mitre.oval:tst:8936"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 240101">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 138084-01 or later installed" test_ref="oval:org.mitre.oval:tst:8152"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 240101">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114262-04 or later installed" test_ref="oval:org.mitre.oval:tst:8854"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 240101">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 108965-11 or later installed" test_ref="oval:org.mitre.oval:tst:9126"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5732" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the Solaris Kerberos PAM Module May Allow Use of a User Specified Kerberos Configuration File, Leading to Escalation of Privileges</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-0360" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0360"/>
        <description>Russ Allbery pam-krb5 before 3.13, when linked against MIT Kerberos, does not properly initialize the Kerberos libraries for setuid use, which allows local users to gain privileges by pointing an environment variable to a modified Kerberos configuration file, and then launching a PAM-based setuid application.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-03-27T14:00:00.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-04-01T14:58:24.663-04:00">DRAFT</status_change>
            <status_change date="2009-04-20T04:00:18.263-04:00">INTERIM</status_change>
            <status_change date="2009-05-11T04:00:21.367-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 252767">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 112237-16 or later installed" test_ref="oval:org.mitre.oval:tst:9624"/>
          <criterion negate="true" comment="Patch 112390-14 or later installed" test_ref="oval:org.mitre.oval:tst:8797"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 252767">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 112908-34 or later installed" test_ref="oval:org.mitre.oval:tst:9570"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 252767">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 138371-06 or later installed" test_ref="oval:org.mitre.oval:tst:9655"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 252767">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 112238-15 or later installed" test_ref="oval:org.mitre.oval:tst:9370"/>
          <criterion negate="true" comment="Patch 112240-13 or later installed" test_ref="oval:org.mitre.oval:tst:9206"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 252767">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 115168-19 or later installed" test_ref="oval:org.mitre.oval:tst:9606"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 252767">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 138372-06 or later installed" test_ref="oval:org.mitre.oval:tst:9713"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5698" version="1" class="vulnerability">
      <metadata>
        <title>The Solaris rpc.metad(1M) Daemon is Vulnerable to a Denial of Service (DoS) Attack</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1480" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1480"/>
        <description>rpc.metad in Sun Solaris 10 allows remote attackers to cause a denial of service (daemon crash) via a malformed RPC request.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-05-06T17:15:10.000-04:00">
              <contributor organization="Hewlett-Packard">Michael Wood</contributor>
            </submitted>
            <status_change date="2009-05-07T11:17:43.220-04:00">DRAFT</status_change>
            <status_change date="2009-05-25T04:01:43.025-04:00">INTERIM</status_change>
            <status_change date="2009-06-15T04:00:46.835-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 249146">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 116669-34 or later installed" test_ref="oval:org.mitre.oval:tst:9832"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 249146">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 138632-03 or later installed" test_ref="oval:org.mitre.oval:tst:9259"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 249146">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 138574-01 or later installed" test_ref="oval:org.mitre.oval:tst:9628"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 249146">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 138882-02 or later installed" test_ref="oval:org.mitre.oval:tst:9974"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5692" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Solaris sendfile(3EXT) and sendfilev(3EXT) Extended Library Functions may Result in a Denial of Service (DoS) Condition due to a System Panic</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-2912" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2912"/>
        <description>The (1) sendfile and (2) sendfilev functions in Sun Solaris 8 through 10, and OpenSolaris before snv_110, allow local users to cause a denial of service (panic) via vectors related to vnode function calls.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-08-21T11:07:35.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-08-21T20:56:32.365-04:00">DRAFT</status_change>
            <status_change date="2009-09-07T04:00:05.294-04:00">INTERIM</status_change>
            <status_change date="2009-09-28T04:00:07.402-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 258588">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 127721-02 or later installed" test_ref="oval:org.mitre.oval:tst:10485"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 258588">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 122300-42 or later installed" test_ref="oval:org.mitre.oval:tst:10637"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 258588">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 141414-05 or later installed" test_ref="oval:org.mitre.oval:tst:10676"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 258588">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 127722-02 or later installed" test_ref="oval:org.mitre.oval:tst:10535"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 258588">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 122301-42 or later installed" test_ref="oval:org.mitre.oval:tst:10364"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 258588">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 141415-05 or later installed" test_ref="oval:org.mitre.oval:tst:10432"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5668" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in DHCP Handling of DHCP Requests May Allow Remote Users to Execute Arbitrary Code or Cause a Denial of the DHCP Service</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-5010" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5010"/>
        <description>in.dhcpd in the DHCP implementation in Sun Solaris 8 through 10, and OpenSolaris before snv_103, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via unknown DHCP requests related to the "number of offers," aka Bug ID 6713805.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-11-12T10:55:27.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-11-17T16:33:20.811-05:00">DRAFT</status_change>
            <status_change date="2008-12-08T04:00:55.761-05:00">INTERIM</status_change>
            <status_change date="2008-12-29T04:00:19.867-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 243806">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion negate="true" comment="Patch 109077-21 or later installed" test_ref="oval:org.mitre.oval:tst:9421"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 243806">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 112837-16 or later installed" test_ref="oval:org.mitre.oval:tst:8553"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 243806">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 138876-01 or later installed" test_ref="oval:org.mitre.oval:tst:9473"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 243806">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion negate="true" comment="Patch 109078-21 or later installed" test_ref="oval:org.mitre.oval:tst:9315"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 243806">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 114265-15 or later installed" test_ref="oval:org.mitre.oval:tst:9359"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 243806">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 138877-01 or later installed" test_ref="oval:org.mitre.oval:tst:9008"/>
          </criteria>
        </criteria>
        <criterion comment="System is configured as a DHCP server" test_ref="oval:org.mitre.oval:tst:8812"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5639" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the ACL (acl(2)) Implementation for UFS File Systems May Allow a Local User to Panic the System</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-4160" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4160"/>
        <description>Unspecified vulnerability in the UFS module in Sun Solaris 8 through 10 and OpenSolaris allows local users to cause a denial of service (NULL pointer dereference and kernel panic) via unknown vectors related to the Solaris Access Control List (ACL) implementation.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-08-19T11:48:53.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-08-19T14:58:28.865-04:00">DRAFT</status_change>
            <status_change date="2009-09-07T04:00:04.209-04:00">INTERIM</status_change>
            <status_change date="2009-09-28T04:00:06.168-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 242267">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion negate="true" comment="Patch 117350-60 or later installed" test_ref="oval:org.mitre.oval:tst:10320"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 242267">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 122300-34 or later installed" test_ref="oval:org.mitre.oval:tst:10524"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 242267">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 139483-01 or later installed" test_ref="oval:org.mitre.oval:tst:10531"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 242267">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion negate="true" comment="Patch 117351-60 or later installed" test_ref="oval:org.mitre.oval:tst:9984"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 242267">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 122301-34 or later installed" test_ref="oval:org.mitre.oval:tst:10020"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 242267">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 139484-01 or later installed" test_ref="oval:org.mitre.oval:tst:9621"/>
          </criteria>
        </criteria>
        <criterion comment="The system has UFS file systems mounted which are writable (read-write)" test_ref="oval:org.mitre.oval:tst:10049"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5609" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the namefs Kernel module may result in Arbitrary Code Execution or a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3450" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3450"/>
        <description>Unspecified vulnerability in the namefs kernel module in Sun Solaris 8 through 10 allows local users to gain privileges or cause a denial of service (panic) via unspecified vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-08-05T10:37:22.000-04:00">
              <contributor organization="Hewlett-Packard">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2008-08-11T11:11:36.400-04:00">DRAFT</status_change>
            <status_change date="2008-09-01T04:01:01.503-04:00">INTERIM</status_change>
            <status_change date="2008-09-22T04:00:26.767-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 237986">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 114984-02 or later installed" test_ref="oval:org.mitre.oval:tst:9052"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 237986">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 114985-02 or later installed" test_ref="oval:org.mitre.oval:tst:9021"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 237986">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114971-03 or later installed" test_ref="oval:org.mitre.oval:tst:9022"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 237986">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 138570-01 or later installed" test_ref="oval:org.mitre.oval:tst:8942"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 237986">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 136716-01 or later installed" test_ref="oval:org.mitre.oval:tst:8779"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 237986">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 136717-01 or later installed" test_ref="oval:org.mitre.oval:tst:9079"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5543" version="3" class="vulnerability">
      <metadata>
        <title>A Buffer Overflow Security Vulnerability in the Solaris sadmind(1M) Daemon May Lead to Execution of Arbitrary Code</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-4556" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4556"/>
        <description>Stack-based buffer overflow in the adm_build_path function in sadmind in Sun Solstice AdminSuite on Solaris 8 and 9 allows remote attackers to execute arbitrary code via a crafted request.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-05-26T13:34:47.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-05-27T17:29:51.085-04:00">DRAFT</status_change>
            <status_change date="2009-06-15T04:00:44.279-04:00">INTERIM</status_change>
            <status_change date="2009-07-06T04:00:22.228-04:00">ACCEPTED</status_change>
            <modified comment="Fixed incorrect user_id element value in process_state.  Incorrect value was 'root', updated to value of '0'." date="2010-09-02T15:11:00.501-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T15:13:54.673-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:29.494-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 245806">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion negate="true" comment="Patch 116455-02 or later installed" test_ref="oval:org.mitre.oval:tst:9833"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 245806">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 116453-03 or later installed" test_ref="oval:org.mitre.oval:tst:9695"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 245806">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion negate="true" comment="Patch 116442-02 or later installed" test_ref="oval:org.mitre.oval:tst:10038"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 245806">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 116454-03 or later installed" test_ref="oval:org.mitre.oval:tst:10171"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Configuration Section">
          <criterion comment="inetd running" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criterion comment="inetd.conf contains sadmind" test_ref="oval:org.mitre.oval:tst:1023"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5532" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in FreeType 2 Font Engine May Allow Privilege Escalation Due to Heap Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2754" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2754"/>
        <description>Integer signedness error in truetype/ttgload.c in Freetype 2.3.4 and earlier might allow remote attackers to execute arbitrary code via a crafted TTF image with a negative n_points value, which leads to an integer overflow and heap-based buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-01-09T07:41:41.000-05:00">
              <contributor organization="Hewlett-Packard">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2008-01-09T14:14:49.552-05:00">DRAFT</status_change>
            <status_change date="2008-02-04T10:19:29.641-05:00">INTERIM</status_change>
            <status_change date="2008-02-25T04:00:11.261-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 103171">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 124420-03 or later installed" test_ref="oval:org.mitre.oval:tst:7777"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 103171">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 116105-08 or later installed" test_ref="oval:org.mitre.oval:tst:7445"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 103171">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 119812-05 or later installed" test_ref="oval:org.mitre.oval:tst:7736"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 103171">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 124421-03 or later installed" test_ref="oval:org.mitre.oval:tst:7493"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103171">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 116106-07 or later installed" test_ref="oval:org.mitre.oval:tst:7547"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 103171">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 119813-07 or later installed" test_ref="oval:org.mitre.oval:tst:6931"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5511" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability May Allow Firewall Compromise or Creation of Denial of Service (DoS) Condition</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1095" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1095"/>
        <description>Unspecified vulnerability in the Internet Protocol (IP) implementation in Sun Solaris 8, 9, and 10 allows remote attackers to bypass intended firewall policies or cause a denial of service (panic) via unknown vectors, possibly related to ICMP packets and IP fragment reassembly.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-03-04T08:44:56.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-03-06T08:35:11.775-05:00">DRAFT</status_change>
            <status_change date="2008-03-24T04:00:48.629-04:00">INTERIM</status_change>
            <status_change date="2008-04-14T04:00:10.100-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 200183">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 116965-30 or later installed" test_ref="oval:org.mitre.oval:tst:7533"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 200183">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114344-32 or later installed" test_ref="oval:org.mitre.oval:tst:7854"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 200183">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 118822-27 or later installed" test_ref="oval:org.mitre.oval:tst:7608"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 200183">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 116966-29 or later installed" test_ref="oval:org.mitre.oval:tst:7656"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 200183">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 119435-20 or later installed" test_ref="oval:org.mitre.oval:tst:6892"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 200183">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 118844-28 or later installed" test_ref="oval:org.mitre.oval:tst:7175"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5507" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Security Vulnerabilities in ICU 3.2 Library Regular Expression Processing May Cause a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4770" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4770"/>
        <description>libicu in International Components for Unicode (ICU) 3.8.1 and earlier attempts to process backreferences to the nonexistent capture group zero (aka \0), which might allow context-dependent attackers to read from, or write to, out-of-bounds memory locations, related to corruption of REStackFrames.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-03-11T10:54:47.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-03-12T09:38:11.814-04:00">DRAFT</status_change>
            <status_change date="2008-03-31T04:00:11.544-04:00">INTERIM</status_change>
            <status_change date="2008-04-21T04:00:22.668-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 233922">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114677-15 or later installed" test_ref="oval:org.mitre.oval:tst:7086"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 233922">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 119810-05 or later installed" test_ref="oval:org.mitre.oval:tst:7683"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 233922">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114678-15 or later installed" test_ref="oval:org.mitre.oval:tst:7869"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 233922">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 119811-05 or later installed" test_ref="oval:org.mitre.oval:tst:6971"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5474" version="3" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the USB Mouse STREAMS Module May Lead to a System Panic</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-0718" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0718"/>
        <description>Unspecified vulnerability in the USB Mouse STREAMS module (usbms) in Sun Solaris 9 and 10, when 64-bit mode is enabled, allows local users to cause a denial of service (panic) via unspecified vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-02-13T12:25:59.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-02-13T16:34:39.778-05:00">DRAFT</status_change>
            <status_change date="2008-03-03T04:00:18.196-05:00">INTERIM</status_change>
            <status_change date="2008-03-24T04:00:47.661-04:00">ACCEPTED</status_change>
            <modified comment="Added datatype to bits entity on an isainfo_state.  Datatype set to int." date="2010-09-02T21:09:00.853-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T21:11:44.185-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:28.762-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 201316">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 115553-29 or later installed" test_ref="oval:org.mitre.oval:tst:7796"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 201316">
            <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
            <criterion negate="true" comment="Patch 123402-01 or later installed" test_ref="oval:org.mitre.oval:tst:7809"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 201316">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 115554-25 or later installed" test_ref="oval:org.mitre.oval:tst:6972"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 201316">
            <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
            <criterion negate="true" comment="Patch 123403-01 or later installed" test_ref="oval:org.mitre.oval:tst:7804"/>
          </criteria>
        </criteria>
        <criterion comment="system is running in 64-bit mode" test_ref="oval:org.mitre.oval:tst:3884"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5453" version="1" class="vulnerability">
      <metadata>
        <title>Covert Channel Security Vulnerability in the Solaris Kernel</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3875" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3875"/>
        <description>The kernel in Sun Solaris 8 through 10 and OpenSolaris before snv_90 allows local users to bypass chroot, zones, and the Solaris Trusted Extensions multi-level security policy, and establish a covert communication channel, via unspecified vectors involving system calls.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-03T10:23:55.000-04:00">
              <contributor organization="Hewlett-Packard">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2008-09-09T10:51:57.209-04:00">DRAFT</status_change>
            <status_change date="2008-09-29T04:00:42.720-04:00">INTERIM</status_change>
            <status_change date="2008-10-20T04:00:19.491-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 240706">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 117350-56 or later installed" test_ref="oval:org.mitre.oval:tst:9150"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 240706">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 117351-56 or later installed" test_ref="oval:org.mitre.oval:tst:8843"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 240706">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 122300-30 or later installed" test_ref="oval:org.mitre.oval:tst:9046"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 240706">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 122301-30 or later installed" test_ref="oval:org.mitre.oval:tst:9227"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 240706">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 137111-05 or later installed" test_ref="oval:org.mitre.oval:tst:9075"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 240706">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 137112-05 or later installed" test_ref="oval:org.mitre.oval:tst:8905"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5431" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Security Vulnerabilities in ICU 3.2 Library Regular Expression Processing May Cause a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4771" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4771"/>
        <description>Heap-based buffer overflow in the doInterval function in regexcmp.cpp in libicu in International Components for Unicode (ICU) 3.8.1 and earlier allows context-dependent attackers to cause a denial of service (memory consumption) and possibly have unspecified other impact via a regular expression that writes a large amount of data to the backtracking stack.  NOTE: some of these details are obtained from third party information.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-03-11T10:54:48.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-03-12T09:38:12.118-04:00">DRAFT</status_change>
            <status_change date="2008-03-31T04:00:09.181-04:00">INTERIM</status_change>
            <status_change date="2008-04-21T04:00:22.018-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 233922">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114677-15 or later installed" test_ref="oval:org.mitre.oval:tst:7086"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 233922">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 119810-05 or later installed" test_ref="oval:org.mitre.oval:tst:7683"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 233922">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114678-15 or later installed" test_ref="oval:org.mitre.oval:tst:7869"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 233922">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 119811-05 or later installed" test_ref="oval:org.mitre.oval:tst:6971"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5403" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the Solaris Kerberos PAM Module May Allow Use of a User Specified Kerberos Configuration File, Leading to Escalation of Privileges</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2009-0361" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0361"/>
        <description>Russ Allbery pam-krb5 before 3.13, as used by libpam-heimdal, su in Solaris 10, and other software, does not properly handle calls to pam_setcred when running setuid, which allows local users to overwrite and change the ownership of arbitrary files by setting the KRB5CCNAME environment variable, and then launching a setuid application that performs certain pam_setcred operations.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-03-27T14:00:00.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-04-01T14:58:25.195-04:00">DRAFT</status_change>
            <status_change date="2009-04-20T04:00:10.359-04:00">INTERIM</status_change>
            <status_change date="2009-05-11T04:00:19.532-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 252767">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 112237-16 or later installed" test_ref="oval:org.mitre.oval:tst:9624"/>
          <criterion negate="true" comment="Patch 112390-14 or later installed" test_ref="oval:org.mitre.oval:tst:8797"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 252767">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 112908-34 or later installed" test_ref="oval:org.mitre.oval:tst:9570"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 252767">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 138371-06 or later installed" test_ref="oval:org.mitre.oval:tst:9655"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 252767">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 112238-15 or later installed" test_ref="oval:org.mitre.oval:tst:9370"/>
          <criterion negate="true" comment="Patch 112240-13 or later installed" test_ref="oval:org.mitre.oval:tst:9206"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 252767">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 115168-19 or later installed" test_ref="oval:org.mitre.oval:tst:9606"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 252767">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 138372-06 or later installed" test_ref="oval:org.mitre.oval:tst:9713"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5393" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Solaris X Server May Lead to Unauthorized Disclosure of Information on Access Restricted Files and Directories</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-5958" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5958"/>
        <description>X.Org Xserver before 1.4.1 allows local users to determine the existence of arbitrary files via a filename argument in the -sp option to the X program, which produces different error messages depending on whether the filename exists.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-02-12T08:48:34.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-02-13T09:26:36.813-05:00">DRAFT</status_change>
            <status_change date="2008-03-03T04:00:16.207-05:00">INTERIM</status_change>
            <status_change date="2008-03-24T04:00:46.668-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 230901">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 119067-09 or later installed" test_ref="oval:org.mitre.oval:tst:7606"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 230901">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 112785-63 or later installed" test_ref="oval:org.mitre.oval:tst:7770"/>
        </criteria>
        <criteria operator="AND">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion comment="File Xsun exists" test_ref="oval:org.mitre.oval:tst:3109"/>
              <criterion negate="true" comment="Patch 119059-38 or later installed" test_ref="oval:org.mitre.oval:tst:7694"/>
            </criteria>
            <criteria operator="AND">
              <criterion comment="File Xorg exists" test_ref="oval:org.mitre.oval:tst:1336"/>
              <criterion negate="true" comment="Patch 125719-07 or later installed" test_ref="oval:org.mitre.oval:tst:7744"/>
            </criteria>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 230901">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 119068-09 or later installed" test_ref="oval:org.mitre.oval:tst:7681"/>
        </criteria>
        <criteria operator="AND">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion comment="File Xsun exists" test_ref="oval:org.mitre.oval:tst:3109"/>
              <criterion negate="true" comment="Patch 112786-52 or later installed" test_ref="oval:org.mitre.oval:tst:7415"/>
            </criteria>
            <criteria operator="AND">
              <criterion comment="File Xorg exists" test_ref="oval:org.mitre.oval:tst:1336"/>
              <criterion negate="true" comment="Patch 118908-04 or later installed" test_ref="oval:org.mitre.oval:tst:7428"/>
            </criteria>
          </criteria>
        </criteria>
        <criteria operator="AND">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion comment="File Xsun exists" test_ref="oval:org.mitre.oval:tst:3109"/>
              <criterion negate="true" comment="Patch 119060-37 or later installed" test_ref="oval:org.mitre.oval:tst:7764"/>
            </criteria>
            <criteria operator="AND">
              <criterion comment="File Xorg exists" test_ref="oval:org.mitre.oval:tst:1336"/>
              <criterion negate="true" comment="Patch 125720-17 or later installed" test_ref="oval:org.mitre.oval:tst:7423"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5347" version="3" class="vulnerability">
      <metadata>
        <title>Heap-based Buffer Overflow Vulnerability in the Solaris 8 and 9 sadmind(1M) Daemon May Lead to Arbitrary Code Execution</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3869" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3869"/>
        <description>Heap-based buffer overflow in sadmind in Sun Solaris 8 and 9 allows remote attackers to execute arbitrary code via a crafted RPC request, related to improper decoding of request parameters.</description>
        <oval_repository>
          <dates>
            <submitted date="2009-05-28T13:34:47.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2009-06-05T14:12:44.460-04:00">DRAFT</status_change>
            <status_change date="2009-06-22T04:00:19.512-04:00">INTERIM</status_change>
            <status_change date="2009-07-13T04:00:31.941-04:00">ACCEPTED</status_change>
            <modified comment="Fixed incorrect user_id element value in process_state.  Incorrect value was 'root', updated to value of '0'." date="2010-09-02T15:11:00.501-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T15:13:54.398-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:28.072-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 259468">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion negate="true" comment="Patch 116455-02 or later installed" test_ref="oval:org.mitre.oval:tst:9833"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 259468">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion negate="true" comment="Patch 116453-03 or later installed" test_ref="oval:org.mitre.oval:tst:9695"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 259468">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion negate="true" comment="Patch 116442-02 or later installed" test_ref="oval:org.mitre.oval:tst:10038"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 259468">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion negate="true" comment="Patch 116454-03 or later installed" test_ref="oval:org.mitre.oval:tst:10171"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Configuration Section">
          <criterion comment="inetd running" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criterion comment="inetd.conf contains sadmind" test_ref="oval:org.mitre.oval:tst:1023"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5318" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in Solaris snoop(1M) when Displaying SMB Traffic</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-0964" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0964"/>
        <description>Multiple stack-based buffer overflows in snoop on Sun Solaris 8 through 10 and OpenSolaris before snv_96, when the -o option is omitted, allow remote attackers to execute arbitrary code via a crafted SMB packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-08-11T12:08:06.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-08-14T15:03:14.279-04:00">DRAFT</status_change>
            <status_change date="2008-09-01T04:00:54.664-04:00">INTERIM</status_change>
            <status_change date="2008-09-22T04:00:22.547-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 240101">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 138083-01 or later installed" test_ref="oval:org.mitre.oval:tst:9062"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 240101">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 112915-05 or later installed" test_ref="oval:org.mitre.oval:tst:9103"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 240101">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 108964-11 or later installed" test_ref="oval:org.mitre.oval:tst:8936"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 240101">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 138084-01 or later installed" test_ref="oval:org.mitre.oval:tst:8152"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 240101">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114262-04 or later installed" test_ref="oval:org.mitre.oval:tst:8854"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 240101">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 108965-11 or later installed" test_ref="oval:org.mitre.oval:tst:9126"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5282" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 9 sshd(1M) Patches May Cause Incorrect Audit Data to be Logged</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-6505" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6505"/>
        <description>Solaris 9, with Solaris Auditing enabled and certain patches for sshd installed, can generate audit records with an audit-ID of 0 even when the user logging into ssh is not root, which makes it easier for attackers to avoid detection and can make it more difficult to conduct forensics activities.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-01-09T07:41:42.000-05:00">
              <contributor organization="Hewlett-Packard">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2008-01-09T14:14:50.538-05:00">DRAFT</status_change>
            <status_change date="2008-02-04T10:19:09.130-05:00">INTERIM</status_change>
            <status_change date="2008-02-25T04:00:10.579-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 103172">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 122300-17 or later installed" test_ref="oval:org.mitre.oval:tst:7771"/>
          <criterion comment="Patch 113273-11 or later installed" test_ref="oval:org.mitre.oval:tst:7745"/>
          <criterion comment="Patch 113273-16 or earlier installed" test_ref="oval:org.mitre.oval:tst:7780"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103172">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 122301-17 or later installed" test_ref="oval:org.mitre.oval:tst:7712"/>
          <criterion comment="Patch 114858-09 or later installed" test_ref="oval:org.mitre.oval:tst:7746"/>
          <criterion comment="Patch 114858-13 or earlier installed" test_ref="oval:org.mitre.oval:tst:7680"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5269" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in Solaris Print Service May Lead to Denial of Service (DoS) or Execution of Arbitrary Code</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-2144" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2144"/>
        <description>Multiple unspecified vulnerabilities in Solaris print service for Sun Solaris 8, 9, and 10 allow remote attackers to cause a denial of service or execute arbitrary code via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-14T13:20:42.000-04:00">
              <contributor organization="Hewlett-Packard">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2008-05-15T14:47:17.480-04:00">DRAFT</status_change>
            <status_change date="2008-06-02T04:00:08.809-04:00">INTERIM</status_change>
            <status_change date="2008-06-23T04:00:12.580-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 236884">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 109320-20 or later installed" test_ref="oval:org.mitre.oval:tst:7494"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 236884">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 109321-20 or later installed" test_ref="oval:org.mitre.oval:tst:7873"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 236884">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 113329-19 or later installed" test_ref="oval:org.mitre.oval:tst:7921"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 236884">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114980-20 or later installed" test_ref="oval:org.mitre.oval:tst:7759"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 236884">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 127127-11 or later installed" test_ref="oval:org.mitre.oval:tst:7382"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 236884">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 127128-11 or later installed" test_ref="oval:org.mitre.oval:tst:7793"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5216" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the libxml2 Library May Lead to a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-6284" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6284"/>
        <description>The xmlCurrentChar function in libxml2 before 2.6.31 allows context-dependent attackers to cause a denial of service (infinite loop) via XML containing invalid UTF-8 sequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-02-12T08:48:33.000-05:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-02-13T09:26:34.461-05:00">DRAFT</status_change>
            <status_change date="2008-03-03T04:00:10.886-05:00">INTERIM</status_change>
            <status_change date="2008-03-24T04:00:40.950-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 201514">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114014-18 or later installed" test_ref="oval:org.mitre.oval:tst:7816"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 201514">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 125731-02 or later installed" test_ref="oval:org.mitre.oval:tst:7732"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 201514">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 114015-18 or later installed" test_ref="oval:org.mitre.oval:tst:7223"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 201514">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 125732-02 or later installed" test_ref="oval:org.mitre.oval:tst:7419"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5141" version="2" class="vulnerability">
      <metadata>
        <title>CDE libDtHelp Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Common Desktop Environment</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0834" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0834"/>
        <description>Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARCHPATH environment variable and the Help feature, (2) DTSEARCHPATH, or (3) LOGNAME.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T12:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T12:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-06-02T12:00:00.000-04:00" comment="Added product">
              <contributor organization="The MITRE Corporation">Christine Walzer</contributor>
            </modified>
            <status_change date="2005-06-08T03:17:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-29T06:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="CDE Application Runtime or CDE Separable Help (any SUNWdtbas/SUNWdtbax/SUNWdthep) installed">
          <criterion comment="CDE application basic runtime environment (SUNWdtbas/SUNWdtbax) installed" negate="false" test_ref="oval:org.mitre.oval:tst:459"/>
          <criterion comment="Separable help for CDE (SUNWdthep) installed" negate="false" test_ref="oval:org.mitre.oval:tst:280"/>
        </criteria>
        <criterion comment="Patch 107178-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:279"/>
        <criterion comment="Patch 108949-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:278"/>
        <criterion comment="Patch 116308-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:277"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4950" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in Floating Point Context Switch Implementation May Result in a Denial of Service (DoS) or Data Integrity Issues</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1778" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1778"/>
        <description>Unspecified vulnerability in the floating point context switch implementation in Sun Solaris 9 and 10 on x86 platforms might allow local users to cause a denial of service (application exit), corrupt data, or trigger incorrect calculations via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-04-15T07:48:47.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-04-15T12:06:15.409-04:00">DRAFT</status_change>
            <status_change date="2008-05-05T04:00:22.388-04:00">INTERIM</status_change>
            <status_change date="2008-05-26T04:00:19.375-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 233921">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 122301-23 or later installed" test_ref="oval:org.mitre.oval:tst:7682"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 233921">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 127112-10 or later installed" test_ref="oval:org.mitre.oval:tst:7749"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4936" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos 5 KDC ASN.1 Error Handling Double-free Vulnerabilities</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Kerberos5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0642" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0642"/>
        <description>Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) library and (2) client library for MIT Kerberos 5 (krb5) 1.3.4 and earlier may allow remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="Changed kerberos unknown test to solaris file contents test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="AND" comment="Software section">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion negate="true" comment="Patch 112908-15 or later installed" test_ref="oval:org.mitre.oval:tst:616"/>
        </criteria>
        <criteria operator="AND" comment="Configuration section">
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" test_ref="oval:org.mitre.oval:tst:1153"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4863" version="1" class="vulnerability">
      <metadata>
        <title>Apache Mod_Proxy Remote Negative Content-Length Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0492" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0492"/>
        <description>Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:12:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:16:00.000-04:00" comment="Changed apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:20:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4848" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the Handling of Self Encapsulated IP Packets may Lead to a Denial of Service (DOS) Condition.</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1779" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1779"/>
        <description>Sun Solaris 8, 9, and 10 allows "remote privileged" users to cause a denial of service (panic) via unknown vectors related to self encapsulated IP packets.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-04-15T07:48:47.000-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </submitted>
            <status_change date="2008-04-15T12:06:17.868-04:00">DRAFT</status_change>
            <status_change date="2008-05-05T04:00:21.938-04:00">INTERIM</status_change>
            <status_change date="2008-05-26T04:00:15.482-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 235901">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 116965-32 or later installed" test_ref="oval:org.mitre.oval:tst:7947"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 235901">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 114344-34 or later installed" test_ref="oval:org.mitre.oval:tst:7482"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 235901">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 127111-11 or later installed" test_ref="oval:org.mitre.oval:tst:7975"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 235901">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 116966-31 or later installed" test_ref="oval:org.mitre.oval:tst:7668"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 235901">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 119435-22 or later installed" test_ref="oval:org.mitre.oval:tst:7881"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 235901">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 127112-11 or later installed" test_ref="oval:org.mitre.oval:tst:7822"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4834" version="2" class="vulnerability">
      <metadata>
        <title>LDAP RBAC Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>LDAP</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1353" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1353"/>
        <description>Unknown vulnerability in LDAP on Sun Solaris 8 and 9, when using Role Based Access Control (RBAC), allows local users to execute certain commands with additional privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 108993-38 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:300"/>
          <criterion comment="Patch 112960-17 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:299"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/nsswitch.conf configured to use LDAP with RBAC" negate="false" test_ref="oval:org.mitre.oval:tst:298"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4725" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Solaris crontab(1) utility may allow execution of Arbitrary Code</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-2538" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2538"/>
        <description>Unspecified vulnerability in crontab on Sun Solaris 8 through 10, and OpenSolaris before snv_93, allows local users to insert cron jobs into the crontab files of arbitrary users via unspecified vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-06-05T11:19:56.000-04:00">
              <contributor organization="Hewlett-Packard">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2008-06-05T14:00:22.164-04:00">DRAFT</status_change>
            <status_change date="2008-06-23T04:00:11.562-04:00">INTERIM</status_change>
            <modified comment="Fixed duplicate criteria for Solaris 9" date="2008-07-02T16:52:00.808-04:00">
              <contributor organization="Secure Elements, Inc.">Dragos Prisaca</contributor>
            </modified>
            <status_change date="2008-07-21T04:00:08.039-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 237864">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 109007-26 or later installed" test_ref="oval:org.mitre.oval:tst:7905"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 237864">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 122300-27 or later installed" test_ref="oval:org.mitre.oval:tst:7763"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 237864">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 137017-02 or later installed" test_ref="oval:org.mitre.oval:tst:8027"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 237864">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 109008-26 or later installed" test_ref="oval:org.mitre.oval:tst:7968"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 237864">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 122301-27 or later installed" test_ref="oval:org.mitre.oval:tst:7797"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 237864">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 137018-02 or later installed" test_ref="oval:org.mitre.oval:tst:8019"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4670" version="1" class="vulnerability">
      <metadata>
        <title>Apache Mod_Access Access Control Rule Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0993" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0993"/>
        <description>mod_access in Apache 1.3 before 1.3.30, when running big-endian 64-bit platforms, does not properly parse Allow/Deny rules using IP addresses without a netmask, which could allow remote attackers to bypass intended access restrictions.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:13:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:16:00.000-04:00" comment="Changes apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:19:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4661" version="1" class="vulnerability">
      <metadata>
        <title>MIT Kerberos 5 Multiple Double-Free Vulnerabilities</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Kerberos5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0772" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0772"/>
        <description>Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T03:18:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T01:16:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-10-27T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-11-17T10:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="AND" comment="Software section">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion negate="true" comment="Patch 112908-15 or later installed" test_ref="oval:org.mitre.oval:tst:616"/>
        </criteria>
        <criteria operator="AND" comment="Configuration section">
          <criterion comment="Kerberos Key Distribution Center (krb5kdc) running" test_ref="oval:org.mitre.oval:tst:314"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:464" version="6" class="vulnerability">
      <metadata>
        <title>Solaris 8, 9, 10 ICMP Source Quench Attack Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0791" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0791"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via a blind throughput-reduction attack using spoofed Source Quench packets, aka the "ICMP Source Quench attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:47.997-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:55.567-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:45:00.680-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:46:46.709-05:00">INTERIM</status_change>
            <modified comment="Standardized title." date="2007-02-23T13:00:00.812-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-03-21T16:17:19.479-04:00">ACCEPTED</status_change>
            <modified comment="Added missing patch checks." date="2007-06-26T10:59:00.998-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </modified>
            <status_change date="2007-06-26T11:01:33.028-04:00">INTERIM</status_change>
            <status_change date="2007-07-11T15:17:32.802-04:00">ACCEPTED</status_change>
            <modified comment="EDITED oval:org.mitre.oval:def:464 - Various corrections to comments and products to align with Authoring Style Guide" date="2011-04-22T23:54:00.899-04:00">
              <contributor organization="G2, Inc.">Shane Shaffer</contributor>
            </modified>
            <status_change date="2011-04-23T00:05:38.269-04:00">INTERIM</status_change>
            <status_change date="2011-05-09T04:01:34.130-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion negate="true" comment="Patch 116965-19 or later installed" test_ref="oval:org.mitre.oval:tst:4028"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion negate="true" comment="Patch 116966-18 or later installed" test_ref="oval:org.mitre.oval:tst:4069"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion negate="true" comment="Patch 118305-08 or later installed" test_ref="oval:org.mitre.oval:tst:3204"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion negate="true" comment="Patch 117470-07 or later installed" test_ref="oval:org.mitre.oval:tst:4114"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion negate="true" comment="Patch 118822-27 or later installed" test_ref="oval:org.mitre.oval:tst:3505"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101658 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion negate="true" comment="Patch 118844-28 or later installed" test_ref="oval:org.mitre.oval:tst:3302"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4574" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSL ASN.1 Inputs Character Tracking Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sun Cluster</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0544" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0544"/>
        <description>OpenSSL 0.9.6 and 0.9.7 does not properly track the number of characters in certain ASN.1 inputs, which allows remote attackers to cause a denial of service (crash) via an SSL client certificate that causes OpenSSL to read past the end of a buffer when the long form is used.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:10:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 113505-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:511"/>
          <criterion comment="Patch 113508-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:510"/>
          <criterion comment="Patch 115054-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:509"/>
          <criterion comment="Patch 115055-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:508"/>
          <criterion comment="SunCluster Component SUNWscvw installed" negate="false" test_ref="oval:org.mitre.oval:tst:507"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running with SunPlex Manager config" negate="false" test_ref="oval:org.mitre.oval:tst:506"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4561" version="2" class="vulnerability">
      <metadata>
        <title>Solaris Code Execution DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0669" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0669"/>
        <description>Unknown vulnerability in Solaris 2.6 through 9 causes a denial of service (system panic) via "a rare race condition" or an attack by local users.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 106541-25 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:319"/>
        <criterion comment="Patch 108528-19 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:318"/>
        <criterion comment="Patch 112233-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:317"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4532" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability With Loading Arbitrary Kernel Modules in Solaris Kernel</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 2.6</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1767" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1767"/>
        <description>The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel modules (LKM), possibly involving the modload function.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-09-25T11:24:50.000-04:00">
              <contributor organization="Hewlett-Packard">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2007-12-13T15:33:46.112-05:00">DRAFT</status_change>
            <status_change date="2007-12-31T04:01:18.435-05:00">INTERIM</status_change>
            <status_change date="2008-02-04T10:16:58.394-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert 57479">
          <extend_definition comment="Solaris 7 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:2107"/>
          <criterion negate="true" comment="Patch 106541-29 or later installed" test_ref="oval:org.mitre.oval:tst:4002"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 57479">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 108528-27 or later installed" test_ref="oval:org.mitre.oval:tst:4228"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 57479">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 112233-11 or later installed" test_ref="oval:org.mitre.oval:tst:3814"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert 57479">
          <extend_definition comment="Solaris 7 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2036"/>
          <criterion negate="true" comment="Patch 106542-29 or later installed" test_ref="oval:org.mitre.oval:tst:3686"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 57479">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 108529-27 or later installed" test_ref="oval:org.mitre.oval:tst:4247"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 57479">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 112234-11 or later installed" test_ref="oval:org.mitre.oval:tst:3937"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 2.6 (SPARC) meets Sun Alert 57479">
          <extend_definition comment="Solaris 2.6 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1361"/>
          <criterion negate="true" comment="Patch 105181-37 or later installed" test_ref="oval:org.mitre.oval:tst:3794"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 2.6 (x86) meets Sun Alert 57479">
          <extend_definition comment="Solaris 2.6 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1967"/>
          <criterion negate="true" comment="Patch 105182-37 or later installed" test_ref="oval:org.mitre.oval:tst:3479"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:449" version="1" class="vulnerability">
      <metadata>
        <title>Bind OPT Resource Record DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Bind</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1220" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1220"/>
        <description>BIND 8.3.x through 8.3.3 allows remote attackers to cause a denial of service (termination due to assertion failure) via a request for a subdomain that does not exist, with an OPT resource record with a large UDP payload size.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Internet Domain Name Server (BIND, SUNWinamd) installed" negate="false" test_ref="oval:org.mitre.oval:tst:2626"/>
          <criterion comment="Patch 112970-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2625"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="in.named running" negate="false" test_ref="oval:org.mitre.oval:tst:2624"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4416" version="1" class="vulnerability">
      <metadata>
        <title>Apache mod_digest Nonce Verification Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0987" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0987"/>
        <description>mod_digest for Apache before 1.3.31 does not properly verify the nonce of a client response by using a AuthNonce secret.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:14:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:15:00.000-04:00" comment="Change apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:19:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4329" version="4" class="vulnerability">
      <metadata>
        <title>cachefsd DoS via Invalid RPC Request</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>cachefsd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0085" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0085"/>
        <description>cachefsd in Solaris 2.6, 7, and 8 allows remote attackers to cause a denial of service (crash) via an invalid procedure call in an RPC request.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
            <modified comment="fixed the service_name entity used in the inetd_object" date="2007-04-10T15:17:00.350-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </modified>
            <status_change date="2007-04-10T15:17:45.456-04:00">INTERIM</status_change>
            <status_change date="2007-04-25T19:52:30.532-04:00">ACCEPTED</status_change>
            <modified comment="Fixed incorrect user_id element value in process_state.  Incorrect value was 'root', updated to value of '0'." date="2010-09-02T15:11:00.501-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T15:13:54.971-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:24.850-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 108800-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3024"/>
          <criterion comment="Patch 110896-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2946"/>
          <criterion comment="Patch 114008-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3050"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains cachefsd" negate="false" test_ref="oval:org.mitre.oval:tst:3049"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4254" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSL Integer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sun Cluster</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0543" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0543"/>
        <description>Integer overflow in OpenSSL 0.9.6 and 0.9.7 allows remote attackers to cause a denial of service (crash) via an SSL client certificate with certain ASN.1 tag values.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:10:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 113505-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:511"/>
          <criterion comment="Patch 113508-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:510"/>
          <criterion comment="Patch 115054-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:509"/>
          <criterion comment="Patch 115055-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:508"/>
          <criterion comment="SunCluster Component SUNWscvw installed" negate="false" test_ref="oval:org.mitre.oval:tst:507"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running with SunPlex Manager config" negate="false" test_ref="oval:org.mitre.oval:tst:506"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4114" version="1" class="vulnerability">
      <metadata>
        <title>Apache Error Log Escape Sequence Injection Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0020" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0020"/>
        <description>Apache does not filter terminal escape sequences from its error logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:14:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:14:00.000-04:00" comment="Change apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:18:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4095" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in Solaris Volume Manager (SVM) May Allow a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-5921" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5921"/>
        <description>Unspecified vulnerability in the ioctl interface in the Solaris Volume Manager (SVM) in Sun Solaris 9 and 10 allows local users to cause a denial of service (panic) via unspecified vectors, a different vulnerability than CVE-2004-1346.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-11-14T13:46:57.000-05:00">
              <contributor organization="Hewlett-Packard">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2007-11-16T08:53:16.185-05:00">DRAFT</status_change>
            <status_change date="2007-12-03T04:05:58.160-05:00">INTERIM</status_change>
            <status_change date="2007-12-24T04:05:42.679-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 103143">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 124256-03 or later installed" test_ref="oval:org.mitre.oval:tst:6439"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 103143">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 126257-04 or later installed" test_ref="oval:org.mitre.oval:tst:6587"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 103143">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 116669-31 or later installed" test_ref="oval:org.mitre.oval:tst:5870"/>
          <criteria operator="OR" comment="Solaris 9 (SPARC) Sun Alert 103143 extra patches">
            <criterion comment="Patch 113026-03 or later installed" test_ref="oval:org.mitre.oval:tst:6795"/>
            <criterion comment="Patch 113073-11 or later installed" test_ref="oval:org.mitre.oval:tst:6844"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103143">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 122371-07 or later installed" test_ref="oval:org.mitre.oval:tst:6632"/>
          <criteria operator="OR" comment="Solaris 9 (x86) Sun Alert 103143 extra patches">
            <criterion comment="Patch 113994-02 or later installed" test_ref="oval:org.mitre.oval:tst:6596"/>
            <criterion comment="Patch 118559-12 or later installed" test_ref="oval:org.mitre.oval:tst:6809"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4030" version="1" class="vulnerability">
      <metadata>
        <title>DtMail Local Command Line Format String Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>DtMail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0800" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0800"/>
        <description>Format string vulnerability in CDE Mailer (dtmail) on Solaris 8 and 9 allows local users to gain privileges via format strings in the argv[0] value.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:09:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 109613-07 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:365"/>
        <criterion comment="Patch 112810-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:364"/>
        <criterion comment="CDE Desktop Applications (SUNWdtdst) installed" negate="false" test_ref="oval:org.mitre.oval:tst:363"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:397" version="2" class="vulnerability">
      <metadata>
        <title>MIT Kerberos 5 Key Distribution Center Remote Denial of Service Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Kerberos</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1174" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1174"/>
        <description>MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of service (application crash) via a certain valid TCP connection that causes a free of unallocated memory.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:46.201-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:53.901-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:01:00.728-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:02:18.764-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:18.240-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112536-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3209"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112537-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3424"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112237-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3567"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112238-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3898"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) with Supplmental Encryption Packages meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criteria operator="OR" comment="Solaris Supplemental Encryption Packages are installed" negate="false">
            <criterion comment="Pkg SUNWcry (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3198"/>
            <criterion comment="Pkg SUNWcryr (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3694"/>
          </criteria>
          <criterion comment="Patch 112390-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3640"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) with Supplmental Encryption Packages meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criteria operator="OR" comment="Solaris Supplemental Encryption Packages are installed" negate="false">
            <criterion comment="Pkg SUNWcry (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3198"/>
            <criterion comment="Pkg SUNWcryr (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3694"/>
          </criteria>
          <criterion comment="Patch 112240-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3497"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112908-20 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3389"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 115168-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3624"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120469-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3561"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 120470-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3418"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3799" version="1" class="vulnerability">
      <metadata>
        <title>Apache Web Server Multiple Module Local Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0542" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0542"/>
        <description>Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:08:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 113146-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:383"/>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3637" version="1" class="vulnerability">
      <metadata>
        <title>priocntl Directory Traversal Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>priocntl()</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1296"/>
        <description>Directory traversal vulnerability in priocntl system call in Solaris does allows local users to execute arbitrary code via ".." sequences in the pc_clname field of a pcinfo_t structure, which cause priocntl to load a malicious kernel module.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 106541-24 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:546"/>
        <criterion comment="Patch 108528-18 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:390"/>
        <criterion comment="Patch 112233-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:389"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3606" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail Ruleset Parsing Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0681" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0681"/>
        <description>A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:26:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T01:15:00.000-04:00">DRAFT</status_change>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="AND" comment="Software section">
          <criterion comment="Sendmail - root (SUNWsndmr) installed" test_ref="oval:org.mitre.oval:tst:608"/>
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion negate="true" comment="Patch 107684-11 or later installed" test_ref="oval:org.mitre.oval:tst:392"/>
          <criterion negate="true" comment="Patch 110615-11 or later installed" test_ref="oval:org.mitre.oval:tst:391"/>
          <criterion negate="true" comment="Patch 113575-05 or later installed" test_ref="oval:org.mitre.oval:tst:464"/>
        </criteria>
        <criteria operator="AND" comment="Configuration section">
          <criterion comment="Sendmail running" test_ref="oval:org.mitre.oval:tst:583"/>
          <criterion comment="Sendmail has recipient or final rulesets" test_ref="oval:org.mitre.oval:tst:393"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:360" version="2" class="vulnerability">
      <metadata>
        <title>Sun Java System Access Manager Local Authentication Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 8</platform>
          <product>Access Manager</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0531" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0531"/>
        <description>Unspecified vulnerability in Sun Java System Access Manager 7.0 allows local users logged in as "root" to bypass authentication and gain top-level administrator privileges via the amadmin CLI tool.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:45.919-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:53.570-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:50:00.385-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:52:25.407-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:17.664-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="SPARC" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
        <criterion comment="Sun Java System Access Manager 7 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3551"/>
        <criterion comment="Patch 120954-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3567" version="1" class="vulnerability">
      <metadata>
        <title>Patches Disable Basic Security Module Auditing Functionality</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Basic Security Module</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1358" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1358"/>
        <description>The patches (1) 114332-08 and (2) 114929-06 for Sun Solaris 9 disable the auditing functionality of the Basic Security Module (BSM), which allows attackers to avoid having their activity logged.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Patch 114332-08 installed" negate="false" test_ref="oval:org.mitre.oval:tst:406"/>
          <criterion comment="Patch 114332-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:405"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/system has BSM enabled" negate="false" test_ref="oval:org.mitre.oval:tst:404"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3505" version="2" class="vulnerability">
      <metadata>
        <title>sshd Log Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>sshd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1357" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1357"/>
        <description>The Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with the ListenAddress as 0.0.0.0, which makes it easier for remote attackers to hide the source of their activities.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Secure Shell Server - Usr (SUNWsshdu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:417"/>
          <criterion comment="Patch 113273-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:416"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/ssh/sshd_config has 0.0.0.0 as ListenAddress" negate="false" test_ref="oval:org.mitre.oval:tst:415"/>
          <criterion comment="sshd running" negate="false" test_ref="oval:org.mitre.oval:tst:484"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3465" version="3" class="vulnerability">
      <metadata>
        <title>SunOS 5.9: ufs and fsck patch</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Solaris Volume Manager (SVM)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1346" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1346"/>
        <description>The Sun Solaris Volume Manager (SVM) on Solaris 9 allows local users to cause a denial of service (kernel panic) via a malformed probe request to the SVM.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T05:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T05:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T05:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T05:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
            <modified comment="Corrected operation on line element of textfilecontent_object. Operation must be pattern match." date="2007-01-04T08:52:00.308-05:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2007-01-04T08:54:46.519-05:00">INTERIM</status_change>
            <modified comment="Updated obj:374: set operation to pattern match on filename." date="2007-01-22T13:52:00.664-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-02-20T13:40:22.064-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Patch 113073-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:426"/>
          <criterion comment="Solaris Volume Manager package installed" negate="false" test_ref="oval:org.mitre.oval:tst:425"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="svm.init init script exists" negate="false" test_ref="oval:org.mitre.oval:tst:424"/>
          <criterion comment="/etc/vfstab is configured with SVM devices" negate="false" test_ref="oval:org.mitre.oval:tst:423"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3400" version="1" class="vulnerability">
      <metadata>
        <title>Buffer Overflow in Solaris ping Daemon</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Licence Logging Service</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1352" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1352"/>
        <description>Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7 or 8 OR Solaris 9 and Solaris Basic IP Commands (SUNWbip) installed">
          <criteria operator="OR" comment="Solaris 7 or 8 installed">
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 and Solaris Basic IP Commands (SUNWbip) installed">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
            <criterion comment="Solaris Basic IP Commands (SUNWbip) installed" negate="false" test_ref="oval:org.mitre.oval:tst:433"/>
          </criteria>
        </criteria>
        <criterion comment="Patch 118313-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:432"/>
        <criterion comment="Patch 116986-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:431"/>
        <criterion comment="Patch 116774-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:430"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3322" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos 5 Double-free Vulnerability in krb5_rd_cred Function</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Kerberos5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0643" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0643"/>
        <description>Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="Changed kerberos unknown test to solaris file contents test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="AND" comment="Software section">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion negate="true" comment="Patch 112908-15 or later installed" test_ref="oval:org.mitre.oval:tst:616"/>
        </criteria>
        <criteria operator="AND" comment="Configuration section">
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" test_ref="oval:org.mitre.oval:tst:1153"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3162" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in RPCSEC_GSS (rpcsec_gss(3NSL)) Affects Kerberos Administration Daemon (kadmind(1M))</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-3999" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3999"/>
        <description>Stack-based buffer overflow in the svcauth_gss_validate function in lib/rpc/svc_auth_gss.c in the RPCSEC_GSS RPC library (librpcsecgss) in MIT Kerberos 5 (krb5) 1.4 through 1.6.2, as used by the Kerberos administration daemon (kadmind) and some third-party applications that use krb5, allows remote attackers to cause a denial of service (daemon crash) and probably execute arbitrary code via a long string in an RPC message.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-10-31T12:34:51.000-04:00">
              <contributor organization="Opsware, Inc.">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2007-11-01T12:41:43.692-04:00">DRAFT</status_change>
            <status_change date="2007-11-16T08:14:50.135-05:00">INTERIM</status_change>
            <status_change date="2007-12-03T04:01:50.066-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 103060">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 126928-02 or later installed" test_ref="oval:org.mitre.oval:tst:5410"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 103060">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 113318-32 or later installed" test_ref="oval:org.mitre.oval:tst:5371"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 103060">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 126661-02 or later installed" test_ref="oval:org.mitre.oval:tst:5581"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 103060">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 126929-02 or later installed" test_ref="oval:org.mitre.oval:tst:5434"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103060">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 117468-18 or later installed" test_ref="oval:org.mitre.oval:tst:5207"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 103060">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 126662-02 or later installed" test_ref="oval:org.mitre.oval:tst:5538"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:307" version="3" class="vulnerability">
      <metadata>
        <title>CGI.pm start_form Cross-Site Scripting Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Perl</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0615" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0615"/>
        <description>Cross-site scripting (XSS) vulnerability in start_form() of CGI.pm allows remote attackers to insert web script via a URL that is fed into the form's action parameter.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:45.271-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:52.795-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:07:00.888-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:07:47.915-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:15.663-04:00">ACCEPTED</status_change>
            <modified comment="Updated criteria for Solaris 9 and updated comments." date="2008-06-16T16:47:00.045-04:00">
              <contributor organization="Secure Elements, Inc.">Dragos Prisaca</contributor>
            </modified>
            <status_change date="2008-06-16T16:51:14.059-04:00">INTERIM</status_change>
            <status_change date="2008-07-07T04:00:16.879-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 200205 (formerly 101426) criteria.">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 122091-01 or later installed" test_ref="oval:org.mitre.oval:tst:7556"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 200205 (formerly 101426) criteria.">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 122092-01 or later installed" test_ref="oval:org.mitre.oval:tst:7630"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 200205 (formerly 101426) criteria.">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 119449-01 or later installed" test_ref="oval:org.mitre.oval:tst:3644"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 200205 (formerly 101426) criteria.">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 119450-01 or later installed" test_ref="oval:org.mitre.oval:tst:3771"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3027" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in Solaris Kernel Statistics Retrieval Process May Allow a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-5632" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5632"/>
        <description>Multiple unspecified vulnerabilities in the kernel in Sun Solaris 8 through 10 allow local users to cause a denial of service (panic), related to the support for retrieval of kernel statistics, and possibly related to the sfmmu_mlspl_enter or sfmmu_mlist_enter functions.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-10-24T12:32:39.000-04:00">
              <contributor organization="Opsware, Inc.">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2007-10-24T17:06:05.258-04:00">DRAFT</status_change>
            <status_change date="2007-11-13T12:01:11.224-05:00">INTERIM</status_change>
            <status_change date="2007-12-03T04:01:12.772-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 103064">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 117350-50 or later installed" test_ref="oval:org.mitre.oval:tst:5260"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 103064">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 122300-13 or later installed" test_ref="oval:org.mitre.oval:tst:4570"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 103064">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 127111-01 or later installed" test_ref="oval:org.mitre.oval:tst:5241"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 103064">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 117351-50 or later installed" test_ref="oval:org.mitre.oval:tst:5306"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103064">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 122301-13 or later installed" test_ref="oval:org.mitre.oval:tst:5341"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 103064">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 127112-01 or later installed" test_ref="oval:org.mitre.oval:tst:5374"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2972" version="2" class="vulnerability">
      <metadata>
        <title>Solaris TCP/IP Stack System Panic Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>TCP/IP</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1355" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1355"/>
        <description>Unknown vulnerability in the TCP/IP stack for Sun Solaris 8 and 9 allows local users to cause a denial of service (system panic) via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 116895-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:468"/>
        <criterion comment="Patch 117000-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:467"/>
        <criterion comment="Patch 112233-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:777"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2816" version="4" class="vulnerability">
      <metadata>
        <title>XFS Dispatch() Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>fs.auto, xfs</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1317" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1317"/>
        <description>Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
            <modified comment="fixed the service_name entity used in the inetd_object" date="2007-04-10T15:16:00.255-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </modified>
            <status_change date="2007-04-10T15:16:47.366-04:00">INTERIM</status_change>
            <status_change date="2007-04-25T19:52:25.482-04:00">ACCEPTED</status_change>
            <modified comment="Fixed incorrect user_id element value in process_state.  Incorrect value was 'root', updated to value of '0'." date="2010-09-02T15:11:00.501-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T15:13:53.493-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:21.086-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="X Window System Font Server (SUNWxwfs) installed" negate="false" test_ref="oval:org.mitre.oval:tst:478"/>
          <criterion comment="Patch 113923-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:477"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains fs.auto" negate="false" test_ref="oval:org.mitre.oval:tst:2870"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2770" version="5" class="vulnerability">
      <metadata>
        <title>Solaris 9 CDE ToolTalk Database Server Symbolic Link Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Common Desktop Environment</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0678" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0678"/>
        <description>CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-15T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T12:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T12:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-01-11T12:00:00.000-04:00" comment="modified sat-6 - Changed test to pattern match and added check for 64bit version">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="modified sat-6 - Changed regular expression test to properly check for 64bit package">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-01-24T02:39:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">ACCEPTED</status_change>
            <modified comment="fixed the service_name entity used in the inetd_object" date="2007-04-10T15:17:00.627-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </modified>
            <status_change date="2007-04-10T15:17:29.208-04:00">INTERIM</status_change>
            <status_change date="2007-04-25T19:52:24.787-04:00">ACCEPTED</status_change>
            <modified comment="Fixed incorrect user_id element value in process_state.  Incorrect value was 'root', updated to value of '0'." date="2010-09-02T15:11:00.501-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T15:13:53.201-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:20.686-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Toolktalk (SUNWtltk/SUNWtltkx) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1169"/>
          <criterion comment="Patch 112808-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1168"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criterion comment="inetd.conf contains rpc.ttdbserverd" negate="false" test_ref="oval:org.mitre.oval:tst:3103"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2719" version="1" class="vulnerability">
      <metadata>
        <title>Buffer Management Error in OpenSSH</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>OpenSSH</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0693" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0693"/>
        <description>A "buffer management error" in buffer_append_space of buffer.c for OpenSSH before 3.7 may allow remote attackers to execute arbitrary code by causing an incorrect amount of memory to be freed and corrupting the heap, a different vulnerability than CVE-2003-0695.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Patch 113273-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:485"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="sshd running" negate="false" test_ref="oval:org.mitre.oval:tst:484"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2592" version="5" class="vulnerability">
      <metadata>
        <title>KCMS KCS_OPEN_PROFILE File Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>kcms_server</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0027" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0027"/>
        <description>Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
            <modified comment="fixed the service_name entity used in the inetd_object" date="2007-04-10T15:15:00.237-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </modified>
            <status_change date="2007-04-10T15:15:57.329-04:00">INTERIM</status_change>
            <status_change date="2007-04-25T19:52:24.241-04:00">ACCEPTED</status_change>
            <modified comment="Added platforms for Solaris 8 and 9" date="2008-12-08T13:59:00.558-05:00">
              <contributor organization="Secure Elements, Inc.">Dragos Prisaca</contributor>
            </modified>
            <status_change date="2008-12-08T14:09:27.638-05:00">INTERIM</status_change>
            <status_change date="2008-12-29T04:00:13.900-05:00">ACCEPTED</status_change>
            <modified comment="Fixed incorrect user_id element value in process_state.  Incorrect value was 'root', updated to value of '0'." date="2010-09-02T15:11:00.501-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T15:13:53.870-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:20.237-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="AND" comment="Software section">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Kodak Color Managment Server (KCMS) Runtime Environment (SUNWkcsrt/SUNWkcsrx) installed" test_ref="oval:org.mitre.oval:tst:505"/>
          <criterion negate="true" comment="Patch 114636-01 or later installed" test_ref="oval:org.mitre.oval:tst:504"/>
          <criterion negate="true" comment="Patch 107337-03 or later installed" test_ref="oval:org.mitre.oval:tst:503"/>
          <criterion negate="true" comment="Patch 111400-02 or later installed" test_ref="oval:org.mitre.oval:tst:502"/>
        </criteria>
        <criteria operator="AND" comment="Configuration section">
          <criterion comment="inetd.conf contains kcms_server" test_ref="oval:org.mitre.oval:tst:2930"/>
          <criterion comment="inetd running" test_ref="oval:org.mitre.oval:tst:3135"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2590" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSL Double-free Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sun Cluster</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0545" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0545"/>
        <description>Double free vulnerability in OpenSSL 0.9.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an SSL client certificate with a certain invalid ASN.1 encoding.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:11:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="AND" comment="Software section">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion negate="true" comment="Patch 113505-02 or later installed" test_ref="oval:org.mitre.oval:tst:511"/>
          <criterion negate="true" comment="Patch 113508-02 or later installed" test_ref="oval:org.mitre.oval:tst:510"/>
          <criterion negate="true" comment="Patch 115054-01 or later installed" test_ref="oval:org.mitre.oval:tst:509"/>
          <criterion negate="true" comment="Patch 115055-01 or later installed" test_ref="oval:org.mitre.oval:tst:508"/>
          <criterion comment="SunCluster Component SUNWscvw installed" test_ref="oval:org.mitre.oval:tst:507"/>
          <criterion comment="Apache (SUNWapchu) installed" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria operator="AND" comment="Configuration section">
          <criterion comment="Apache running with SunPlex Manager config" test_ref="oval:org.mitre.oval:tst:506"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:255" version="4" class="vulnerability">
      <metadata>
        <title>Clear Text Password Logging Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0653" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0653"/>
        <description>Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an "auth" module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other user's passwords by reading log files.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:44.676-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:52.059-04:00">ACCEPTED</status_change>
            <modified comment="Added title and CVE reference. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:48:00.753-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:49:30.783-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:13.310-04:00">ACCEPTED</status_change>
            <modified comment="EDITED oval:org.mitre.oval:def:255 - Various corrections to comments and products to align with Authoring Style Guide" date="2011-04-22T23:54:00.899-04:00">
              <contributor organization="G2, Inc.">Shane Shaffer</contributor>
            </modified>
            <status_change date="2011-04-23T00:05:03.306-04:00">INTERIM</status_change>
            <status_change date="2011-05-09T04:01:28.701-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="OR" comment="Software section">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101519 criteria.">
            <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 112908-12 is installed" test_ref="oval:org.mitre.oval:tst:4105"/>
            <criterion negate="true" comment="Patch 112908-13 or later installed" test_ref="oval:org.mitre.oval:tst:3957"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101519 criteria.">
            <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 115168-03 is installed" test_ref="oval:org.mitre.oval:tst:3258"/>
            <criterion negate="true" comment="Patch 115168-04 or later installed" test_ref="oval:org.mitre.oval:tst:4013"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Configuration section">
          <criterion comment="/etc/krb5/krb5.conf is configured as a kerberos client" test_ref="oval:org.mitre.oval:tst:3487"/>
          <criterion comment="pam_krb5 is an auth module with debug enabled" test_ref="oval:org.mitre.oval:tst:4074"/>
          <criterion comment="Logging of LOG_DEBUG level messages is enabled" test_ref="oval:org.mitre.oval:tst:3394"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2426" version="1" class="vulnerability">
      <metadata>
        <title>BSM Audit Kernel Panic</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Basic Security Module</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0654" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0654"/>
        <description>Unknown vulnerability in the Basic Security Module (BSM), when configured to audit either the Administrative (ad) or the System-Wide Administration (as) audit class in Solaris 7, 8, and 9, allows local users to cause a denial of service (kernel panic).</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T09:40:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T01:15:00.000-04:00">DRAFT</status_change>
            <modified comment="Operation changed from not equal to equals for object oval:org.mitre.oval:obj:458." date="2007-12-28T11:37:00.427-05:00">
              <contributor organization="Secure Elements, Inc.">Sudhir Gandhe</contributor>
            </modified>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria operator="AND" comment="Software section">
          <criterion negate="true" comment="Patch 106541-33 or later installed" test_ref="oval:org.mitre.oval:tst:542"/>
          <criterion negate="true" comment="Patch 109007-18 or later installed" test_ref="oval:org.mitre.oval:tst:541"/>
          <criterion negate="true" comment="Patch 114332-12 or later installed" test_ref="oval:org.mitre.oval:tst:540"/>
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Configuration section">
          <criterion comment="Basic Security Module enabled" test_ref="oval:org.mitre.oval:tst:539"/>
          <criterion comment="Auditing Administrative or System-Wide Administrative audit classes" test_ref="oval:org.mitre.oval:tst:538"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2222" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail Address Processor Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1337" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1337"/>
        <description>Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Sendmail - user (SUNWsndmu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:587"/>
          <criterion comment="Patch 107684-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:586"/>
          <criterion comment="Patch 110615-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:585"/>
          <criterion comment="Patch 113575-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:584"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Sendmail running" negate="false" test_ref="oval:org.mitre.oval:tst:583"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2214" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the Handling of Thread Contexts in the Solaris Kernel May Allow a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-5132" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5132"/>
        <description>Race condition in the kernel in Sun Solaris 8 through 10 allows local users to cause a denial of service (panic) via unspecified vectors related to "the handling of thread contexts."</description>
        <oval_repository>
          <dates>
            <submitted date="2007-09-28T13:02:59.000-04:00">
              <contributor organization="Opsware, Inc.">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2007-10-02T08:04:40.234-04:00">DRAFT</status_change>
            <status_change date="2007-10-18T21:59:20.303-04:00">INTERIM</status_change>
            <status_change date="2007-11-02T07:17:42.208-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 103084" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 117350-48 or later installed" test_ref="oval:org.mitre.oval:tst:4094" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 103084" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 122300-10 or later installed" test_ref="oval:org.mitre.oval:tst:3262" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 103084" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 125100-02 or later installed" test_ref="oval:org.mitre.oval:tst:3554" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 103084" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 117351-48 or later installed" test_ref="oval:org.mitre.oval:tst:4106" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103084" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 122301-10 or later installed" test_ref="oval:org.mitre.oval:tst:4263" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 103084" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 125101-02 or later installed" test_ref="oval:org.mitre.oval:tst:3275" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2210" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in Solaris libnsl(3LIB) may lead to a Denial of Service (DoS) to the rpcbind(1M) Service</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0165" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0165"/>
        <description>Unspecified vulnerability in libnsl in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (crash) via malformed RPC requests that trigger a crash in rpcbind.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:20.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:11.972-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:32.343-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:46.612-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102713" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 108993-65 or later installed" test_ref="oval:org.mitre.oval:tst:3523" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102713" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 113319-27 or later installed" test_ref="oval:org.mitre.oval:tst:3553" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102713" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 108994-65 or later installed" test_ref="oval:org.mitre.oval:tst:3253" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102713" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 113719-21 or later installed" test_ref="oval:org.mitre.oval:tst:3740" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2205" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in X Display Manager (xdm(1)) Xsession Script</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-5215" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5215"/>
        <description>The Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 20060317, and Solaris 8 through 10 before 20061006, allows local users to overwrite arbitrary files, or read another user's Xsession errors file, via a symlink attack on a /tmp/xses-$USER file.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:23.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:13.067-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:32.233-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:46.256-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 111844-04 or later installed" test_ref="oval:org.mitre.oval:tst:3324" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 124830-01 or later installed" test_ref="oval:org.mitre.oval:tst:3994" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 124457-01 or later installed" test_ref="oval:org.mitre.oval:tst:3954" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 111845-04 or later installed" test_ref="oval:org.mitre.oval:tst:4176" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 124831-01 or later installed" test_ref="oval:org.mitre.oval:tst:3585" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 124458-01 or later installed" test_ref="oval:org.mitre.oval:tst:3425" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2183" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail Custom DNS Map Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0906" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0906"/>
        <description>Buffer overflow in Sendmail before 8.12.5, when configured to use a custom DNS map to query TXT records, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malicious DNS server.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-22T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-27T12:00:00.000-04:00" comment="Removed &quot;Sendmail running&quot; configuration test.  Sendmail installs as SUID root">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-04-20T12:13:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        <criterion comment="Sendmail - root (SUNWsndmr) installed" negate="false" test_ref="oval:org.mitre.oval:tst:608"/>
        <criterion comment="Patch 113575-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:607"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2173" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability With the Special File System (SPECFS) strfreectty() Function May Allow a Local Unprivileged User to Panic a System</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4732" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4732"/>
        <description>Unspecified vulnerability in the strfreectty function in the Special File System (SPECFS) in Sun Solaris 8 through 10 allows local users to cause a denial of service (system panic), related to passing a NULL pointer to the pgsignal function.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-09-10T09:34:14.000-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </submitted>
            <status_change date="2007-09-10T14:41:52.544-04:00">DRAFT</status_change>
            <status_change date="2007-09-27T08:57:45.669-04:00">INTERIM</status_change>
            <status_change date="2007-10-12T07:56:14.294-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 103009" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 109025-07 or later installed" test_ref="oval:org.mitre.oval:tst:4230" negate="true"/>
          <criterion comment="Patch 117350-49 or later installed" test_ref="oval:org.mitre.oval:tst:3903" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 103009" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 122300-11 or later installed" test_ref="oval:org.mitre.oval:tst:3307" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 103009" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 118822-24 or later installed" test_ref="oval:org.mitre.oval:tst:3780" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 103009" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 109026-08 or later installed" test_ref="oval:org.mitre.oval:tst:3708" negate="true"/>
          <criterion comment="Patch 117351-49 or later installed" test_ref="oval:org.mitre.oval:tst:3841" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103009" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 122301-11 or later installed" test_ref="oval:org.mitre.oval:tst:3697" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 103009" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 118844-24 or later installed" test_ref="oval:org.mitre.oval:tst:4200" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2170" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in Solaris Named Pipes (pipe(2)) May Allow Unauthorized Data Access</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-5225" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5225"/>
        <description>Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local users to read the contents of unspecified memory locations via a negative maximum length value to the I_PEEK ioctl.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-10-10T07:52:08.000-04:00">
              <contributor organization="Opsware, Inc.">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2007-10-10T13:53:56.913-04:00">DRAFT</status_change>
            <status_change date="2007-10-25T13:04:40.663-04:00">INTERIM</status_change>
            <status_change date="2007-11-13T12:01:06.734-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 103061">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion negate="true" comment="Patch 109454-06 or later installed" test_ref="oval:org.mitre.oval:tst:4308"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 103061">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion negate="true" comment="Patch 117471-04 or later installed" test_ref="oval:org.mitre.oval:tst:3569"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 103061">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion negate="true" comment="Patch 127737-01 or later installed" test_ref="oval:org.mitre.oval:tst:4494"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 103061">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 109455-06 or later installed" test_ref="oval:org.mitre.oval:tst:4095"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103061">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 117472-04 or later installed" test_ref="oval:org.mitre.oval:tst:4375"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 103061">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 127738-01 or later installed" test_ref="oval:org.mitre.oval:tst:4523"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2164" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability Due to Buffer Overflow in The format(1M) Command May Allow Privilege Elevation For Certain RBAC Profiles</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-4319" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4319"/>
        <description>Buffer overflow in the format command in Solaris 8, 9, and 10 allows local users with access to format (such as the "File System Management" RBAC profile) to execute arbitrary code via unknown vectors, a different vulnerability than CVE-2006-4307.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:25.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:13.779-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:31.628-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:45.469-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102519" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 108975-10 or later installed" test_ref="oval:org.mitre.oval:tst:3837" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102519" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 113072-08 or later installed" test_ref="oval:org.mitre.oval:tst:4119" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102519" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 118833-18 or later installed" test_ref="oval:org.mitre.oval:tst:3220" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102519" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 108976-10 or later installed" test_ref="oval:org.mitre.oval:tst:3332" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102519" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 114423-07 or later installed" test_ref="oval:org.mitre.oval:tst:3870" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102519" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 118997-09 or later installed" test_ref="oval:org.mitre.oval:tst:3445" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2163" version="3" class="vulnerability">
      <metadata>
        <title>Samba call_trans2open() Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Samba</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0201" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0201"/>
        <description>Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
            <modified comment="Fixed incorrect user_id element value in process_state.  Incorrect value was 'root', updated to value of '0'." date="2010-09-02T15:11:00.501-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T15:13:54.219-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:19.563-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Samba (SUNWsmbar) installed" negate="false" test_ref="oval:org.mitre.oval:tst:615"/>
          <criterion comment="Patch 114684-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:614"/>
        </criteria>
        <criteria comment="Configuration section" operator="OR">
          <criteria operator="AND" comment="Inetd running and inetd.conf contains smbd">
            <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
            <criterion comment="inetd.conf contains smbd" negate="false" test_ref="oval:org.mitre.oval:tst:613"/>
          </criteria>
          <criterion comment="smbd running" negate="false" test_ref="oval:org.mitre.oval:tst:912"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2154" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in BIND 8 May Allow Cache Poisoning Attack</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2930" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2930"/>
        <description>The (1) NSID_SHUFFLE_ONLY and (2) NSID_USE_POOL PRNG algorithms in ISC BIND 8 before 8.4.7-P1 generate predictable DNS query identifiers when sending outgoing queries such as NOTIFY messages when answering questions as a resolver, which allows remote attackers to poison DNS caches via unknown vectors.  NOTE: this issue is different from CVE-2007-2926.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-10-16T10:34:50.000-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </submitted>
            <status_change date="2007-10-16T14:50:58.416-04:00">DRAFT</status_change>
            <status_change date="2007-11-02T07:17:39.538-04:00">INTERIM</status_change>
            <status_change date="2007-11-19T04:01:00.472-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Software and Criteria Section">
        <criteria operator="OR" comment="Software Section">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 103063" negate="false">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion comment="Patch 109326-20 or later installed" test_ref="oval:org.mitre.oval:tst:4282" negate="true"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 103063" negate="false">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion comment="Patch 109327-20 or later installed" test_ref="oval:org.mitre.oval:tst:4431" negate="true"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 103063" negate="false">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion comment="Patch 112837-14 or later installed" test_ref="oval:org.mitre.oval:tst:4470" negate="true"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103063" negate="false">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion comment="Patch 114265-13 or later installed" test_ref="oval:org.mitre.oval:tst:4525" negate="true"/>
          </criteria>
        </criteria>
        <criterion comment="in.named running" negate="false" test_ref="oval:org.mitre.oval:tst:2624"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2143" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Solaris libsldap Library May Allow a Denial of Service to nscd(1M)</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-3458" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3458"/>
        <description>The libsldap library in Sun Solaris 8, 9, and 10 allows local users to cause a denial of service (Name Service Caching Daemon (nscd) crash) via unspecified vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:18.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:11.150-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:31.197-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:45.094-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102926" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 126373-02 or later installed" test_ref="oval:org.mitre.oval:tst:3188" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102926" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 112960-40 or later installed" test_ref="oval:org.mitre.oval:tst:3433" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102926" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 120036-07 or later installed" test_ref="oval:org.mitre.oval:tst:3274" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102926" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 126374-02 or later installed" test_ref="oval:org.mitre.oval:tst:3728" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102926" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 114242-27 or later installed" test_ref="oval:org.mitre.oval:tst:3171" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102926" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 120037-07 or later installed" test_ref="oval:org.mitre.oval:tst:4079" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2139" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos 5 ASN.1 Library DoS</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Kerberos5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0644" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0644"/>
        <description>The asn1buf_skiptail function in the ASN.1 decoder library for MIT Kerberos 5 (krb5) 1.2.2 through 1.3.4 allows remote attackers to cause a denial of service (infinite loop) via a certain BER encoding.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="Changed kerberos unknown test to solaris file contents test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" negate="false" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion comment="Patch 112908-15 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:616"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" negate="false" test_ref="oval:org.mitre.oval:tst:1153"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2121" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in Solaris ld.so.1(1) may Lead to Execution of Arbitrary Code with Elevated Privileges</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-6494" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6494"/>
        <description>Directory traversal vulnerability in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via a .. (dot dot) sequence in the LANG environment variable that points to a locale file containing attacker-controlled format string specifiers.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:21.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:12.395-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:30.885-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:44.757-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 109147-42 or later installed" test_ref="oval:org.mitre.oval:tst:3395" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 112963-27 or later installed" test_ref="oval:org.mitre.oval:tst:3790" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 124922-01 or later installed" test_ref="oval:org.mitre.oval:tst:3922" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 109148-41 or later installed" test_ref="oval:org.mitre.oval:tst:3236" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 113986-22 or later installed" test_ref="oval:org.mitre.oval:tst:3819" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 124923-01 or later installed" test_ref="oval:org.mitre.oval:tst:3173" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2099" version="1" class="vulnerability">
      <metadata>
        <title>Vulnerability With Solaris IPv6 May Allow a Remote User the Ability to Create a Denial of Service Condition</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-5073" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5073"/>
        <description>Unspecified vulnerability in Sun Solaris 8, 9 and 10 allows remote attackers to cause a denial of service (panic) via crafted IPv6 packets, a different vulnerability than CVE-2006-5013.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:24.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:13.314-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:30.639-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:44.301-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102144" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 116965-22 or later installed" test_ref="oval:org.mitre.oval:tst:3455" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102144" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 114344-20 or later installed" test_ref="oval:org.mitre.oval:tst:4036" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102144" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 119075-13 or later installed" test_ref="oval:org.mitre.oval:tst:3800" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102144" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 116966-21 or later installed" test_ref="oval:org.mitre.oval:tst:4061" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102144" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 119435-10 or later installed" test_ref="oval:org.mitre.oval:tst:3968" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102144" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 119076-11 or later installed" test_ref="oval:org.mitre.oval:tst:3217" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2065" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos Client Plaintext Password Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>pam_krb5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0653" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0653"/>
        <description>Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an "auth" module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other user's passwords by reading log files.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="Changed all unknown tests to solaris file contents tests">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" negate="false" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion comment="Patch 112908-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:630"/>
          <criterion comment="Patch 112908-12 installed" negate="false" test_ref="oval:org.mitre.oval:tst:629"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/pam.conf is configured to use pam_krb5 as an 'auth' module and the debug feature of pam_krb5 is enabled" negate="false" test_ref="oval:org.mitre.oval:tst:628"/>
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" negate="false" test_ref="oval:org.mitre.oval:tst:1153"/>
          <criterion comment="/etc/syslog.conf is configured to log &quot;debug&quot; level messages for at least daemon" negate="false" test_ref="oval:org.mitre.oval:tst:627"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2038" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in the tip(1) Command May Allow Execution of Arbitrary Code With Elevated Privileges</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0470" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0470"/>
        <description>Multiple unspecified vulnerabilities in tip in Sun Solaris 8, 9, and 10 allow local users to gain uucp account privileges via unspecified vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:20.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:11.835-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:29.716-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:43.199-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102773" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 111504-02 or later installed" test_ref="oval:org.mitre.oval:tst:3623" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102773" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 123368-01 or later installed" test_ref="oval:org.mitre.oval:tst:3805" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102773" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 124997-01 or later installed" test_ref="oval:org.mitre.oval:tst:3829" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102773" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 111505-02 or later installed" test_ref="oval:org.mitre.oval:tst:3755" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102773" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 123369-01 or later installed" test_ref="oval:org.mitre.oval:tst:3273" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102773" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 124998-01 or later installed" test_ref="oval:org.mitre.oval:tst:4023" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2037" version="1" class="vulnerability">
      <metadata>
        <title>GNOME XScreenSaver in Solaris 8 and 9 may Allow Physically Proximate Attackers to Access the Console</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-3283" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3283"/>
        <description>GNOME XScreenSaver in Sun Solaris 8 and 9 before 20070417, when root is logged into the console, does not automatically lock the screen after a session has been inactive, which might allow physically proximate attackers to access the console.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-06-21T09:00:00.000-04:00">
              <contributor organization="Opsware, Inc.">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2007-06-22T08:20:00.000-04:00">DRAFT</status_change>
            <status_change date="2007-07-10T21:08:51.190-04:00">INTERIM</status_change>
            <status_change date="2007-08-01T22:26:15.533-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software and Configuration sections" operator="AND">
        <criteria comment="Software section" operator="OR">
          <criteria operator="AND" comment="Solaris 8 (SPARC)" negate="false">
            <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
            <criterion comment="Patch 115298-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3643"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86)" negate="false">
            <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
            <criterion comment="Patch 115299-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3440"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC)" negate="false">
            <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
            <criterion comment="Patch 115158-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3586"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86)" negate="false">
            <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
            <criterion comment="Patch 115159-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3700"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration Section" operator="AND">
          <criterion comment="Gnome (major version is equal to 2) Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3407"/>
          <criterion comment="Gnome (minor version is equal to 0) Installed" negate="false" test_ref="oval:org.mitre.oval:tst:4148"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2033" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the X Inter Client Exchange Library (libICE)</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-3606" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3606"/>
        <description>Unspecified vulnerability in Sun Solaris X Inter Client Exchange library (libICE) on Solaris 8 and 9 allows context-dependent attackers to cause a denial of service (application crash) to applications that use the library.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:27.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:14.391-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:29.620-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:43.086-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102503" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 119067-02 or later installed" test_ref="oval:org.mitre.oval:tst:3413" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102503" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 112785-53 or later installed" test_ref="oval:org.mitre.oval:tst:3734" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102503" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 119068-02 or later installed" test_ref="oval:org.mitre.oval:tst:3473" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102503" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 112786-42 or later installed" test_ref="oval:org.mitre.oval:tst:3965" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2021" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Human Interface Device (HID) Class Driver for Solaris</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-5118" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5118"/>
        <description>Unspecified vulnerability in the HID (Human Interface Device) class driver in Sun Solaris 8, 9, and 10 before 20070925 allows local users to cause a denial of service (panic) via unspecified vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-09-28T13:03:00.000-04:00">
              <contributor organization="Opsware, Inc.">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2007-10-02T08:04:40.419-04:00">DRAFT</status_change>
            <status_change date="2007-10-18T21:59:19.829-04:00">INTERIM</status_change>
            <status_change date="2007-11-02T07:17:35.588-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102883" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 109896-35 or later installed" test_ref="oval:org.mitre.oval:tst:3285" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102883" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 115553-28 or later installed" test_ref="oval:org.mitre.oval:tst:4284" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102883" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 125123-01 or later installed" test_ref="oval:org.mitre.oval:tst:3599" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102883" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 115554-24 or later installed" test_ref="oval:org.mitre.oval:tst:4255" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102883" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 125124-01 or later installed" test_ref="oval:org.mitre.oval:tst:4246" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2015" version="1" class="vulnerability">
      <metadata>
        <title>dtsession(1X) Contains a Buffer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-3471" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3471"/>
        <description>Buffer overflow in the dtsession Common Desktop Environment (CDE) Session Manager in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via unspecified vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-07-03T09:00:00.000-04:00">
              <contributor organization="Opsware, Inc.">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2007-07-03T21:46:26.557-04:00">DRAFT</status_change>
            <status_change date="2007-07-18T15:57:52.224-04:00">INTERIM</status_change>
            <status_change date="2007-08-02T14:47:15.305-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC)" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 109354-26 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3656"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86)" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 109355-25 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3474"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC)" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 113240-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3196"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86)" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 113241-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3818"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC)" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 125279-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3803"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86)" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 125280-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3725"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1989" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the vuidmice(7M) STREAMS Modules May Lead to a Denial of Service (DoS) Condition</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-5319" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5319"/>
        <description>Unspecified vulnerability in the vuidmice STREAMS modules in Sun Solaris 8, 9, and 10 allows local users with console (/dev/console) access to cause a denial of service ("unusable" system console) via unspecified vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-10-10T07:52:08.000-04:00">
              <contributor organization="Opsware, Inc.">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2007-10-10T13:53:56.573-04:00">DRAFT</status_change>
            <status_change date="2007-10-25T13:04:40.350-04:00">INTERIM</status_change>
            <status_change date="2007-11-13T12:01:04.274-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 103065">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion negate="true" comment="Patch 114154-02 or later installed" test_ref="oval:org.mitre.oval:tst:4419"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 103065">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion negate="true" comment="Patch 117419-03 or later installed" test_ref="oval:org.mitre.oval:tst:3534"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 103065">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion negate="true" comment="Patch 127751-01 or later installed" test_ref="oval:org.mitre.oval:tst:4460"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1982" version="1" class="vulnerability">
      <metadata>
        <title>Apache Connection Blocking Denial Of Service Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0174" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0174"/>
        <description>Apache 1.4.x before 1.3.30, and 2.0.x before 2.0.49, when using multiple listening sockets on certain platforms, allows remote attackers to cause a denial of service (blocked new connections) via a "short-lived connection on a rarely-accessed listening socket."</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:13:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:12:00.000-04:00" comment="Changed apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:17:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1980" version="1" class="vulnerability">
      <metadata>
        <title>Multiple vulnerabilities in libfreetype, Xsun(1) and Xorg(1)</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-1003" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1003"/>
        <description>Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large expression, which results in memory corruption.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-07-30T08:16:45.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-01T22:21:20.780-04:00">DRAFT</status_change>
            <status_change date="2007-08-20T08:04:39.670-04:00">INTERIM</status_change>
            <status_change date="2007-09-06T09:13:29.249-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 119067-07 or later installed" test_ref="oval:org.mitre.oval:tst:3167" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 119060-24 or later installed" test_ref="oval:org.mitre.oval:tst:3231" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 125720-03 or later installed" test_ref="oval:org.mitre.oval:tst:4003" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 112785-61 or later installed" test_ref="oval:org.mitre.oval:tst:3874" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 119059-25 or later installed" test_ref="oval:org.mitre.oval:tst:3577" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 119068-07 or later installed" test_ref="oval:org.mitre.oval:tst:3216" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 112786-50 or later installed" test_ref="oval:org.mitre.oval:tst:3471" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 124833-02 or later installed" test_ref="oval:org.mitre.oval:tst:3278" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1970" version="4" class="vulnerability">
      <metadata>
        <title>Off-by-one Error in fb_realpath()</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Solaris Management Console (SMC)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0466" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0466"/>
        <description>Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via commands that cause pathnames of length MAXPATHLEN+1 to trigger a buffer overflow, including (1) STOR, (2) RETR, (3) APPE, (4) DELE, (5) MKD, (6) RMD, (7) STOU, or (8) RNTO.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
            <modified comment="fixed the service_name entity used in the inetd_object" date="2007-04-10T15:14:00.011-04:00">
              <contributor organization="Opsware, Inc.">Todd Dolinsky</contributor>
            </modified>
            <status_change date="2007-04-10T15:15:14.122-04:00">INTERIM</status_change>
            <status_change date="2007-04-25T19:52:21.868-04:00">ACCEPTED</status_change>
            <modified comment="Fixed incorrect user_id element value in process_state.  Incorrect value was 'root', updated to value of '0'." date="2010-09-02T15:11:00.501-04:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2010-09-02T15:13:53.799-04:00">INTERIM</status_change>
            <status_change date="2010-09-20T04:00:18.853-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="FTP Server - Usr (SUNWftpu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:661"/>
          <criterion comment="Patch 114564-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:660"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains in.ftpd" negate="false" test_ref="oval:org.mitre.oval:tst:659"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1966" version="1" class="vulnerability">
      <metadata>
        <title>A Security Vulnerability in the in.iked(1M) Service May Lead To a Denial of Service (DoS)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2989" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2989"/>
        <description>The libike library in Sun Solaris 9 before 20070529 contains a logic error related to a certain pointer, which allows remote attackers to cause a denial of service (in.iked daemon crash) by sending certain UDP packets with a source port different from 500.  NOTE: this issue might overlap CVE-2006-2298.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-06-06T11:47:00.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-06-06T14:28:00.000-04:00">DRAFT</status_change>
            <status_change date="2007-06-22T08:57:42.447-04:00">INTERIM</status_change>
            <status_change date="2007-07-10T21:08:50.458-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criteria operator="AND" comment="Solaris 9 (SPARC)" negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 113451-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3350"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86)" negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 114435-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3373"/>
          </criteria>
        </criteria>
        <criterion comment="/etc/inet/ike/config exists" negate="false" test_ref="oval:org.mitre.oval:tst:3233"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1957" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in NFS Client Module May Lead to a Denial of Service Condition</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2882" ref_url="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-2882"/>
        <description>Unspecified vulnerability in the NFS client module in Sun Solaris 8 through 10 before 20070524, when operating as an NFS server, allows remote attackers to cause a denial of service (crash) via certain Access Control List (acl) packets.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-06-15T09:00:00.000-04:00">
              <contributor organization="Opsware, Inc.">John Wregglesworth</contributor>
            </submitted>
            <status_change date="2007-06-15T11:20:00.000-04:00">DRAFT</status_change>
            <status_change date="2007-07-03T14:05:57.850-04:00">INTERIM</status_change>
            <status_change date="2007-07-18T15:57:51.521-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC)" negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 116959-16 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3570"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86)" negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 116960-16 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4073"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC)" negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 113318-29 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3914"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86)" negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 117468-15 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3605"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC)" negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 124258-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3213"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86)" negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 124259-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3414"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1921" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability With NIS server ypserv(1M) May Allow a Denial of Service (DoS) to Occur</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-3664" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3664"/>
        <description>Unspecified vulnerability in NIS server on Sun Solaris 8, 9, and 10 allows local and remote attackers to cause a denial of service (ypserv hang) via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:27.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:14.232-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:29.026-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:42.566-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102462" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 109328-06 or later installed" test_ref="oval:org.mitre.oval:tst:3189" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102462" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 113579-09 or later installed" test_ref="oval:org.mitre.oval:tst:3489" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102462" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 123186-01 or later installed" test_ref="oval:org.mitre.oval:tst:3820" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102462" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 109329-06 or later installed" test_ref="oval:org.mitre.oval:tst:4121" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102462" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 114342-09 or later installed" test_ref="oval:org.mitre.oval:tst:3508" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102462" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 122078-02 or later installed" test_ref="oval:org.mitre.oval:tst:3928" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1920" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in Sun Remote Services (SRS) Net Connect Software</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2617" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2617"/>
        <description>srsexec in Sun Remote Services (SRS) Net Connect Software Proxy Core package in Sun Solaris 10 does not enforce file permissions when opening files, which allows local users to read the first line of arbitrary files via the -d and -v options.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:19.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:11.321-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:28.914-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:42.438-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102891" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 125713-01 or later installed" test_ref="oval:org.mitre.oval:tst:3206" negate="true"/>
          <criterion comment="SRS Net Connect Software 3.2.3 is installed" test_ref="oval:org.mitre.oval:tst:4171"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102891" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 125713-01 or later installed" test_ref="oval:org.mitre.oval:tst:3206" negate="true"/>
          <criterion comment="SRS Net Connect Software 3.2.3 is installed" test_ref="oval:org.mitre.oval:tst:4171"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102891" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 125713-01 or later installed" test_ref="oval:org.mitre.oval:tst:3206" negate="true"/>
          <criterion comment="SRS Net Connect Software 3.2.3 is installed" test_ref="oval:org.mitre.oval:tst:4171"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102891" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 123870-02 or later installed" test_ref="oval:org.mitre.oval:tst:4014" negate="true"/>
          <criterion comment="SRS Net Connect Software 3.2.4 is installed" test_ref="oval:org.mitre.oval:tst:3230"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102891" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 123870-02 or later installed" test_ref="oval:org.mitre.oval:tst:4014" negate="true"/>
          <criterion comment="SRS Net Connect Software 3.2.4 is installed" test_ref="oval:org.mitre.oval:tst:3230"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102891" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 123870-02 or later installed" test_ref="oval:org.mitre.oval:tst:4014" negate="true"/>
          <criterion comment="SRS Net Connect Software 3.2.4 is installed" test_ref="oval:org.mitre.oval:tst:3230"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1909" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerabilities in Solaris ld.so.1(1) may Lead to Execution of Arbitrary Code with Elevated Privileges</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-6495" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6495"/>
        <description>Stack-based buffer overflow in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via large precision padding values in a format string specifier in the format parameter of the doprf function.  NOTE: this issue normally does not cross privilege boundaries, except in cases of external introduction of malicious message files, or if it is leveraged with other vulnerabilities such as CVE-2006-6494.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:21.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:12.283-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:28.806-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:42.313-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 109147-42 or later installed" test_ref="oval:org.mitre.oval:tst:3395" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 112963-27 or later installed" test_ref="oval:org.mitre.oval:tst:3790" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 124922-01 or later installed" test_ref="oval:org.mitre.oval:tst:3922" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 109148-41 or later installed" test_ref="oval:org.mitre.oval:tst:3236" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 113986-22 or later installed" test_ref="oval:org.mitre.oval:tst:3819" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102724" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 124923-01 or later installed" test_ref="oval:org.mitre.oval:tst:3173" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1905" version="1" class="vulnerability">
      <metadata>
        <title>dtsession Buffer Overflow via HOME Envvar</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Common Desktop Environment</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0092" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0092"/>
        <description>Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
        <criterion comment="Patch 107702-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:674"/>
        <criterion comment="Patch 109354-19 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:673"/>
        <criterion comment="Patch 114497-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:672"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1840" version="1" class="vulnerability">
      <metadata>
        <title>LDAP rootDN Password Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>LDAP</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-1782" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1782"/>
        <description>Unspecified vulnerability in Solaris 8 and 9 allows local users to obtain the LDAP Directory Server root Distinguished Name (rootDN) password when a privileged user (1) runs idsconfig; or "insecurely" runs LDAP2 commands with the -w option, including (2) ldapadd, (3) ldapdelete, (4) ldapmodify, (5) ldapmodrdn, and (6) ldapsearch.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-04-14T06:41:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-19T10:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-10T08:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102113 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 108993-14 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:700"/>
          <criterion comment="Patch 108993-51 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:699"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102113 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 115677-02 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:698"/>
          <criterion comment="Patch 121321-01 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:697"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102113 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 108994-14 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:696"/>
          <criterion comment="Patch 108994-51 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:695"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102113 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 115678-02 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:694"/>
          <criterion comment="Patch 121322-01 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:693"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1810" version="1" class="vulnerability">
      <metadata>
        <title>Multiple vulnerabilities in libfreetype, Xsun(1) and Xorg(1)</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-1351" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1351"/>
        <description>Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-07-30T08:16:45.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-01T22:21:20.643-04:00">DRAFT</status_change>
            <status_change date="2007-08-20T08:04:38.899-04:00">INTERIM</status_change>
            <status_change date="2007-09-06T09:13:28.469-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 119067-07 or later installed" test_ref="oval:org.mitre.oval:tst:3167" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 124420-02 or later installed" test_ref="oval:org.mitre.oval:tst:3470" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 116106-06 or later installed" test_ref="oval:org.mitre.oval:tst:3765" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 119060-24 or later installed" test_ref="oval:org.mitre.oval:tst:3231" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 125720-03 or later installed" test_ref="oval:org.mitre.oval:tst:4003" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 119813-04 or later installed" test_ref="oval:org.mitre.oval:tst:3930" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 112785-61 or later installed" test_ref="oval:org.mitre.oval:tst:3874" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 116105-07 or later installed" test_ref="oval:org.mitre.oval:tst:3197" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 119059-25 or later installed" test_ref="oval:org.mitre.oval:tst:3577" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 119812-03 or later installed" test_ref="oval:org.mitre.oval:tst:3921" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 119068-07 or later installed" test_ref="oval:org.mitre.oval:tst:3216" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 124421-02 or later installed" test_ref="oval:org.mitre.oval:tst:3676" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 112786-50 or later installed" test_ref="oval:org.mitre.oval:tst:3471" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102886" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 124833-02 or later installed" test_ref="oval:org.mitre.oval:tst:3278" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1798" version="1" class="vulnerability">
      <metadata>
        <title>Buffer Overflow Vulnerability in libX11</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-4655" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4655"/>
        <description>Buffer overflow in the Strcmp function in the XKEYBOARD extension in X Window System X11R6.4 and earlier, as used in SCO UnixWare 7.1.3 and Sun Solaris 8 through 10, allows local users to gain privileges via a long _XKB_CHARSET environment variable value.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:24.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:13.571-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:28.351-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:41.950-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102570" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 119067-03 or later installed" test_ref="oval:org.mitre.oval:tst:3849" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102570" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 112785-56 or later installed" test_ref="oval:org.mitre.oval:tst:4065" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102570" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 119059-16 or later installed" test_ref="oval:org.mitre.oval:tst:3650" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102570" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 119068-03 or later installed" test_ref="oval:org.mitre.oval:tst:3615" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102570" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 112786-45 or later installed" test_ref="oval:org.mitre.oval:tst:4004" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102570" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 119060-15 or later installed" test_ref="oval:org.mitre.oval:tst:3329" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1786" version="4" class="vulnerability">
      <metadata>
        <title>XPM Image Decoder Malicious Color String Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0783" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0783"/>
        <description>Stack-based buffer overflow in xpm_extract_color (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, may allow remote attackers to execute arbitrary code via a certain color string.  NOTE: this identifier is ONLY for gtk+.  It was incorrectly referenced in an advisory for a different issue (CVE-2004-0688).</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-21T04:03:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
            <modified comment="EDITED oval:org.mitre.oval:def:1786 - Various corrections to comments and products to align with Authoring Style Guide" date="2011-04-22T23:54:00.899-04:00">
              <contributor organization="G2, Inc.">Shane Shaffer</contributor>
            </modified>
            <status_change date="2011-04-23T00:04:54.531-04:00">INTERIM</status_change>
            <status_change date="2011-05-09T04:01:20.204-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="GNOME 2.0 Solaris 8 (SPARC) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Installed architecture is sparc" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Gnome 2.0.0 is installed" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion negate="true" comment="Patch 114644-03 or later installed" test_ref="oval:org.mitre.oval:tst:817"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0 Solaris 8 (x86) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Gnome 2.0.0 is installed" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion negate="true" comment="Patch 114645-03 or later installed" test_ref="oval:org.mitre.oval:tst:816"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0 Solaris 9 (SPARC) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Installed architecture is sparc" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Gnome 2.0.0 is installed" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion negate="true" comment="Patch 114686-03 or later installed" test_ref="oval:org.mitre.oval:tst:815"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0.2 Solaris 9 (SPARC) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Installed architecture is sparc" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Gnome 2.0.2 is installed" test_ref="oval:org.mitre.oval:tst:814"/>
          <criterion negate="true" comment="Patch 115738-04 or later installed" test_ref="oval:org.mitre.oval:tst:813"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0 Solaris 9 (x86) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Gnome 2.0.0 is installed" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion negate="true" comment="Patch 114687-03 or later installed" test_ref="oval:org.mitre.oval:tst:812"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0.2 Solaris 9 (x86) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Gnome 2.0.2 is installed" test_ref="oval:org.mitre.oval:tst:814"/>
          <criterion negate="true" comment="Patch 115739-04 or later installed" test_ref="oval:org.mitre.oval:tst:811"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) with JDS release 2 meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="JDS release 2 is installed" test_ref="oval:org.mitre.oval:tst:810"/>
          <criterion negate="true" comment="Patch 121092-01 or later installed" test_ref="oval:org.mitre.oval:tst:809"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1772" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the rcp(1) Command May Allow Execution of Unintended Commands</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-3717" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3717"/>
        <description>rcp on Sun Solaris 8, 9, and 10 before 20070710 does not properly call certain helper applications, which allows local users to gain privileges by creating files with certain names, possibly containing shell metacharacters or spaces, a similar issue to CVE-2006-0225.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-07-12T12:19:52.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-07-16T08:59:43.133-04:00">DRAFT</status_change>
            <status_change date="2007-08-01T22:26:14.652-04:00">INTERIM</status_change>
            <status_change date="2007-08-20T08:04:38.771-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102978" negate="false">
          <extend_definition comment="Solaris 8 Installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criteria operator="AND" comment="Patch 110670-04 and 114669-04 or later installed" negate="true">
            <criterion comment="Patch 110670-04 or later installed" test_ref="oval:org.mitre.oval:tst:3292" negate="false"/>
            <criterion comment="Patch 114669-04 or later installed" test_ref="oval:org.mitre.oval:tst:3763" negate="false"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102978" negate="false">
          <extend_definition comment="Solaris 8 Installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criteria operator="AND" comment="Patch 110671-04 and 114670-04 or later installed" negate="true">
            <criterion comment="Patch 110671-04 or later installed" test_ref="oval:org.mitre.oval:tst:3592" negate="false"/>
            <criterion comment="Patch 114670-04 or later installed" test_ref="oval:org.mitre.oval:tst:3608" negate="false"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102978" negate="false">
          <extend_definition comment="Solaris 9 Installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 114716-05 or later installed" test_ref="oval:org.mitre.oval:tst:3667" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102978" negate="false">
          <extend_definition comment="Solaris 9 Installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 114717-05 or later installed" test_ref="oval:org.mitre.oval:tst:3799" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102978" negate="false">
          <extend_definition comment="Solaris 10 Installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 121132-03 or later installed" test_ref="oval:org.mitre.oval:tst:3927" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102978" negate="false">
          <extend_definition comment="Solaris 10 Installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 125794-02 or later installed" test_ref="oval:org.mitre.oval:tst:4051" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1760" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in X Display Manager (xdm(1)) Xsession Script</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-5214" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5214"/>
        <description>Race condition in the Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 20060225, and Solaris 8 through 10 before 20061006, causes a user's Xsession errors file to have weak permissions before a chmod is performed, which allows local users to read Xsession errors files of other users.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:23.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:13.122-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:28.241-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:41.428-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 111844-04 or later installed" test_ref="oval:org.mitre.oval:tst:3324" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 124830-01 or later installed" test_ref="oval:org.mitre.oval:tst:3994" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 124457-01 or later installed" test_ref="oval:org.mitre.oval:tst:3954" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 111845-04 or later installed" test_ref="oval:org.mitre.oval:tst:4176" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 124831-01 or later installed" test_ref="oval:org.mitre.oval:tst:3585" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102652" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 124458-01 or later installed" test_ref="oval:org.mitre.oval:tst:3425" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1732" version="2" class="vulnerability">
      <metadata>
        <title>/usr/lib/print/conv_fix Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1360" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1360"/>
        <description>Unknown vulnerability in conv_fix in Sun Solaris 7 through 9, when invoked by conv_lpd, allows local users to overwrite arbitrary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="SunSoft Print - Client - Usr (SUNWpcu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:753"/>
        <criterion comment="Patch 107115-14 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:752"/>
        <criterion comment="Patch 109320-09 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:751"/>
        <criterion comment="Patch 113329-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:750"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1726" version="2" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Kerberos Administration Daemon (kadmind(1M)) May Lead to Arbitrary Code Execution</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2798" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2798"/>
        <description>Stack-based buffer overflow in the rename_principal_2_svc function in kadmind for MIT Kerberos 1.5.3, 1.6.1, and other versions allows remote authenticated users to execute arbitrary code via a crafted request to rename a principal.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-06-28T09:00:00.000-04:00">
              <contributor organization="Opsware, Inc.">Nicholas Hansen</contributor>
            </submitted>
            <status_change date="2007-06-29T09:24:18.908-04:00">DRAFT</status_change>
            <status_change date="2007-07-16T09:55:10.258-04:00">INTERIM</status_change>
            <status_change date="2007-08-01T22:26:14.499-04:00">ACCEPTED</status_change>
            <modified comment="The test references for all the criterion were inverted. This fix corrects the test_refs and updates the criteria comments to include the Sun Alert reference." date="2007-11-01T13:08:00.938-04:00">
              <contributor organization="Opsware, Inc.">Nicholas Hansen</contributor>
            </modified>
            <status_change date="2007-11-01T13:11:21.000-04:00">INTERIM</status_change>
            <status_change date="2007-11-16T08:14:19.297-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102985">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5ma) installed" test_ref="oval:org.mitre.oval:tst:3971"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102985">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5ma) installed" test_ref="oval:org.mitre.oval:tst:3971"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102985">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5ma) installed" test_ref="oval:org.mitre.oval:tst:3971"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102985">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5ma) installed" test_ref="oval:org.mitre.oval:tst:3971"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102985">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5ma) installed" test_ref="oval:org.mitre.oval:tst:3971"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102985">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5ma) installed" test_ref="oval:org.mitre.oval:tst:3971"/>
          <criterion comment="Key Distribution Center (kadmind) process running" test_ref="oval:org.mitre.oval:tst:3331"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1707" version="2" class="vulnerability">
      <metadata>
        <title>Enterprise Storage Manager 2.1 SAN Manager management station patch</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sun Enterprise Storage Manager (ESM)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1345" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1345"/>
        <description>Unknown vulnerability in Sun StorEdge Enterprise Storage Manager (ESM) 2.1 for Solaris 8 and Solaris 9 allows local users with the "ESMUser" role to gain root access.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
            <modified date="2009-06-15T12:00:00.000-04:00" comment="Added CVE Reference. Added solaris 9 as an affected platform.">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2009-06-22T04:00:51.071-04:00">INTERIM</status_change>
            <status_change date="2009-07-13T04:00:30.181-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Sun Enterprise Storage Manager installed" test_ref="oval:org.mitre.oval:tst:762"/>
        <criterion negate="true" comment="Patch 117367-01 or later installed" test_ref="oval:org.mitre.oval:tst:761"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:170" version="3" class="vulnerability">
      <metadata>
        <title>Sun Solaris Gzip Race condition and Directory Traversal Issues</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>gzip</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1228" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1228"/>
        <description>Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through 1.3.5 allows remote attackers to write to arbitrary directories via a .. (dot dot) in the original filename within a compressed file.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:27.272-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:16.282-04:00">ACCEPTED</status_change>
            <modified comment="Added title. Implemented by Jon Baker of The MITRE Corporation." date="2007-02-13T14:05:00.064-05:00">
              <contributor organization="Security-Database">Nabil Ouchn</contributor>
            </modified>
            <status_change date="2007-02-13T14:07:07.091-05:00">INTERIM</status_change>
            <status_change date="2007-03-21T16:17:00.447-04:00">ACCEPTED</status_change>
            <modified comment="Corrected sparc criterion that was intended to be x86." date="2009-07-17T11:09:00.287-04:00">
              <contributor organization="Hewlett-Packard">Pai Peng</contributor>
            </modified>
            <status_change date="2009-07-17T11:27:44.296-04:00">INTERIM</status_change>
            <status_change date="2009-08-03T04:00:02.600-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112668-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4005"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 8 Installed" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112669-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4070"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 116340-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3666"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 9 Installed" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 116341-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3778"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120719-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3295"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101816 criteria.">
          <criterion comment="Solaris 10 Installed" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 120720-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3621"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1693" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in libX11 for Solaris</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-1667" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1667"/>
        <description>Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, and (2) XInitImage function in xwd.c for ImageMagick, allow user-assisted remote attackers to cause a denial of service (crash) or obtain sensitive information via crafted images with large or negative values that trigger a buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-07-26T14:51:13.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-07-27T21:36:53.111-04:00">DRAFT</status_change>
            <status_change date="2007-08-13T13:59:51.495-04:00">INTERIM</status_change>
            <status_change date="2007-09-06T09:13:27.878-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102888" negate="false">
          <extend_definition comment="Solaris 8 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1539"/>
          <criterion comment="Patch 119067-08 or later installed" test_ref="oval:org.mitre.oval:tst:3777" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102888" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 112785-62 or later installed" test_ref="oval:org.mitre.oval:tst:4150" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102888" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 119059-26 or later installed" test_ref="oval:org.mitre.oval:tst:3735" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102888" negate="false">
          <extend_definition comment="Solaris 8 (x86) is installed" definition_ref="oval:org.mitre.oval:def:2059"/>
          <criterion comment="Patch 119068-08 or later installed" test_ref="oval:org.mitre.oval:tst:3386" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102888" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 112786-51 or later installed" test_ref="oval:org.mitre.oval:tst:4112" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102888" negate="false">
          <extend_definition comment="Solaris 10 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1926"/>
          <criterion comment="Patch 119060-25 or later installed" test_ref="oval:org.mitre.oval:tst:3541" negate="true"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1684" version="2" class="vulnerability">
      <metadata>
        <title>sendfilev DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>sendfilev()</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1356" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1356"/>
        <description>Unknown vulnerability in the sendfilev function in Sun Solaris 8 and 9 allows local users to cause a denial of service (system panic) via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 108528-27 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:778"/>
        <criterion comment="Patch 112233-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:777"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1680" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability in the Logging Mechanism for Solaris Management Console (SMC) May Lead to Escalation of Privileges</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-3093" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3093"/>
        <description>Unspecified vulnerability in the logging mechanism in Solaris Management Console (SMC) on Sun Solaris 8 through 10 before 20070605 allows remote attackers to execute arbitrary code via unspecified vectors, related to the WBEM server.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-06-08T14:30:00.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-06-08T21:28:00.000-04:00">DRAFT</status_change>
            <status_change date="2007-06-26T20:49:49.714-04:00">INTERIM</status_change>
            <status_change date="2007-07-11T15:17:32.331-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert 102903" negate="false">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 111313-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3336"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert 102903" negate="false">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 111314-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3246"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102903" negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 112945-45 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3891"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102903" negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 114193-35 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3909"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102903" negate="false">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 121308-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3382"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102903" negate="false">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 121309-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3316"/>
          </criteria>
        </criteria>
        <criterion comment="Package SUNWwbmc installed" negate="false" test_ref="oval:org.mitre.oval:tst:3160"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1648" version="1" class="vulnerability">
      <metadata>
        <title>Security Vulnerability With RSA Signature Affects Solaris Applications Utilizing the libike Library</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-7140" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-7140"/>
        <description>The libike library, as used by in.iked, elfsign, and kcfd in Sun Solaris 9 and 10, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents libike from correctly verifying X.509 and other certificates that use PKCS #1, a similar issue to CVE-2006-4339.</description>
        <oval_repository>
          <dates>
            <submitted date="2007-08-10T12:25:20.000-04:00">
              <contributor organization="Opsware, Inc.">Pai Peng</contributor>
            </submitted>
            <status_change date="2007-08-13T13:57:12.117-04:00">DRAFT</status_change>
            <status_change date="2007-09-06T09:13:27.779-04:00">INTERIM</status_change>
            <status_change date="2007-09-27T08:57:40.937-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Software Section">
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert 102722" negate="false">
          <extend_definition comment="Solaris 9 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1457"/>
          <criterion comment="Patch 113451-12 or later installed" test_ref="oval:org.mitre.oval:tst:3311" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert 102722" negate="false">
          <extend_definition comment="Solaris 10 (SPARC) is installed" definition_ref="oval:org.mitre.oval:def:1440"/>
          <criterion comment="Patch 118371-08 or later installed" test_ref="oval:org.mitre.oval:tst:3260" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert 102722" negate="false">
          <extend_definition comment="Solaris 9 (x86) is installed" definition_ref="oval:org.mitre.oval:def:1683"/>
          <criterion comment="Patch 114435-11 or later installed" test_ref="oval:org.mitre.oval:tst:3665" negate="true"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert 102722" negate="false">
          <extend_definition comment="Solar
