PT-2009-5095 · Sun+2 · Opensolaris+3

Published

2009-08-07

·

Updated

2017-09-19

·

CVE-2009-2711

CVSS v2.0

4.9

Medium

VectorAV:L/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions XScreenSaver in Sun Solaris versions 9 and 10 XScreenSaver in OpenSolaris versions prior to snv 120 X11 version 6.4.1 for Solaris 8
Description The issue allows physically proximate attackers to obtain sensitive information by reading popup windows, which are displayed even when the screen is locked.
Recommendations For XScreenSaver in Sun Solaris versions 9 and 10, consider disabling the display of popup windows when the screen is locked. For XScreenSaver in OpenSolaris versions prior to snv 120, consider disabling the display of popup windows when the screen is locked. For X11 version 6.4.1 for Solaris 8, consider disabling the display of popup windows when the screen is locked.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-2711

Affected Products

Opensolaris
Solaris
X11
Xscreensaver