Vulnerabilities > CVE-2009-3839 - Unspecified vulnerability in SUN Opensolaris and Solaris
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN sun
nessus
Summary
Unspecified vulnerability in the Solaris Trusted Extensions Policy configuration in Sun Solaris 10, and OpenSolaris snv_37 through snv_125, might allow remote attackers to execute arbitrary code by leveraging access to the X server.
Vulnerable Configurations
Nessus
NASL family | Solaris Local Security Checks |
NASL id | SOLARIS10_126363.NASL |
description | SunOS 5.10: X Window System changes - Solaris Trusted Extensions. Date this patch was last updated by Sun : Jun/14/14 This plugin has been deprecated and either replaced with individual 126363 patch-revision plugins, or deemed non-security related. |
last seen | 2019-02-21 |
modified | 2018-07-30 |
plugin id | 42171 |
published | 2009-10-19 |
reporter | Tenable |
source | https://www.tenable.com/plugins/index.php?view=single&id=42171 |
title | Solaris 10 (sparc) : 126363-10 (deprecated) |
code |
|
Oval
accepted | 2010-01-25T04:00:19.287-05:00 | ||||||||
class | vulnerability | ||||||||
contributors |
| ||||||||
definition_extensions |
| ||||||||
description | Unspecified vulnerability in the Solaris Trusted Extensions Policy configuration in Sun Solaris 10, and OpenSolaris snv_37 through snv_125, might allow remote attackers to execute arbitrary code by leveraging access to the X server. | ||||||||
family | unix | ||||||||
id | oval:org.mitre.oval:def:6480 | ||||||||
status | accepted | ||||||||
submitted | 2009-12-17T14:02:00.000-05:00 | ||||||||
title | A Security Weakness in Solaris Trusted Extensions May Facilitate Privilege Escalation | ||||||||
version | 35 |
References
- http://secunia.com/advisories/37184
- http://secunia.com/advisories/37184
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-270969-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-270969-1
- http://www.securityfocus.com/bid/36840
- http://www.securityfocus.com/bid/36840
- http://www.vupen.com/english/advisories/2009/3070
- http://www.vupen.com/english/advisories/2009/3070
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6480
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6480