CVE-2009-3100Opensolaris vulnerability

4 documents4 sources
Severity
4.0MEDIUMNVD
EPSS
0.0%
top 90.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 8
Latest updateMay 2

Description

xscreensaver (aka Gnome-XScreenSaver) in Sun Solaris 9 and 10, OpenSolaris snv_109 through snv_122, and X11 6.4.1 on Solaris 8 does not properly handle Accessibility support, which allows local users to cause a denial of service (system hang) by locking the screen and then attempting to launch an Accessibility pop-up window, related to a regression in certain Solaris and OpenSolaris patches.

CVSS vector

AV:L/AC:H/C:N/I:N/A:CExploitability: 1.9 | Impact: 6.9

Affected Packages3 packages

NVDsun/opensolaris14 versions+13
NVDsun/solaris10, 8, 9+2
NVDx.org/x116.4.1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-968q-p5w6-ghj4: xscreensaver (aka Gnome-XScreenSaver) in Sun Solaris 9 and 10, OpenSolaris snv_109 through snv_122, and X11 62022-05-02
CVEList
CVE-2009-3100: xscreensaver (aka Gnome-XScreenSaver) in Sun Solaris 9 and 10, OpenSolaris snv_109 through snv_122, and X11 62009-09-08

📋Vendor Advisories

1
Debian
CVE-2009-3100: xscreensaver - xscreensaver (aka Gnome-XScreenSaver) in Sun Solaris 9 and 10, OpenSolaris snv_1...2009
CVE-2009-3100 — SUN Opensolaris vulnerability | cvebase