PT-2009-5726 · Sun+1 · Xscreensaver+2

Published

2009-09-28

·

Updated

2017-08-17

·

CVE-2009-3432

CVSS v2.0

1.9

Low

VectorAV:L/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions xscreensaver in Sun Solaris 10, and OpenSolaris before snv 112
Description The issue allows physically proximate attackers to read a locked screen via unknown vectors related to XRandR resize events when Xorg or Xnewt is used and RandR is enabled.
Recommendations For xscreensaver in Sun Solaris 10, and OpenSolaris before snv 112, consider disabling RandR or restricting access to Xorg and Xnewt as a temporary workaround until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-3432

Affected Products

Opensolaris
Xorg
Xscreensaver