CVE-2009-3432

xscreensaver <snv_112 - Info Disclosure

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in xscreensaver in Sun Solaris 10, and OpenSolaris before snv_112, when Xorg or Xnewt is used and RandR is enabled, allows physically proximate attackers to read a locked screen via unknown vectors related to XRandR resize events.

References (8)

Core 8
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/36830
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/36488
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/58278
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/2728
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1022936
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/53424
Patch, Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-66-249646-1

Scores

EPSS 0.0005
EPSS Percentile 16.1%

Details

Status published
Products (30)
sun/opensolaris snv_01 (2 CPE variants)
sun/opensolaris snv_02 (2 CPE variants)
sun/opensolaris snv_03 (2 CPE variants)
sun/opensolaris snv_04 (2 CPE variants)
sun/opensolaris snv_05 (2 CPE variants)
sun/opensolaris snv_06 (2 CPE variants)
sun/opensolaris snv_07 (2 CPE variants)
sun/opensolaris snv_08 (2 CPE variants)
sun/opensolaris snv_09 (2 CPE variants)
sun/opensolaris snv_10 (2 CPE variants)
... and 20 more
Published Sep 28, 2009
Tracked Since Feb 18, 2026