CVE-2009-2491

Sun Ray Server Software <4.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

The utaudiod daemon in Sun Ray Server Software (SRSS) 4.0, when Solaris Trusted Extensions is enabled, allows local users to access the sessions of arbitrary users via unknown vectors related to "resource leaks."

References (5)

Core 5
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-66-253889-1
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/55978
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/51742
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/1915

Scores

EPSS 0.0007
EPSS Percentile 21.0%

Details

Status published
Products (1)
sun/ray_server_software 4.0 (3 CPE variants)
Published Jul 16, 2009
Tracked Since Feb 18, 2026