CVE-2009-1276
Last modified
CVE-2009-1276 is a vulnerability of currently unknown severity. XScreenSaver in Sun Solaris 10 and OpenSolaris before snv_109, and Solaris 8 and 9 with GNOME 2.0 or 2.0.2, allows physically proximate attackers to obtain sensitive information by reading popup windows, which are displayed even when the screen is locked, as demonstrated by Thunderbird new-mail notifications.. EPSS estimates a 0.37% chance of exploitation in the next 30 days.
Description
XScreenSaver in Sun Solaris 10 and OpenSolaris before snv_109, and Solaris 8 and 9 with GNOME 2.0 or 2.0.2, allows physically proximate attackers to obtain sensitive information by reading popup windows, which are displayed even when the screen is locked, as demonstrated by Thunderbird new-mail notifications.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sun | Opensolaris | <= snv_108 |
| Sun | Opensolaris | snv_01 |
| Sun | Opensolaris | snv_02 |
| Sun | Opensolaris | snv_03 |
| Sun | Opensolaris | snv_04 |
| Sun | Opensolaris | snv_05 |
| Sun | Opensolaris | snv_06 |
| Sun | Opensolaris | snv_07 |
| Sun | Opensolaris | snv_08 |
| Sun | Opensolaris | snv_09 |
| Sun | Opensolaris | snv_10 |
| Sun | Opensolaris | snv_11 |
| Sun | Opensolaris | snv_12 |
| Sun | Opensolaris | snv_13 |
| Sun | Opensolaris | snv_14 |
| Sun | Opensolaris | snv_15 |
| Sun | Opensolaris | snv_16 |
| Sun | Opensolaris | snv_17 |
| Sun | Opensolaris | snv_18 |
| Sun | Opensolaris | snv_19 |
| Sun | Opensolaris | snv_20 |
| Sun | Opensolaris | snv_21 |
| Sun | Opensolaris | snv_22 |
| Sun | Opensolaris | snv_23 |
| Sun | Opensolaris | snv_24 |
| Sun | Opensolaris | snv_25 |
| Sun | Opensolaris | snv_26 |
| Sun | Opensolaris | snv_27 |
| Sun | Opensolaris | snv_28 |
| Sun | Opensolaris | snv_29 |
| Sun | Opensolaris | snv_30 |
| Sun | Opensolaris | snv_31 |
| Sun | Opensolaris | snv_32 |
| Sun | Opensolaris | snv_33 |
| Sun | Opensolaris | snv_34 |
| Sun | Opensolaris | snv_35 |
| Sun | Opensolaris | snv_36 |
| Sun | Opensolaris | snv_37 |
| Sun | Opensolaris | snv_38 |
| Sun | Opensolaris | snv_39 |
| Sun | Opensolaris | snv_40 |
| Sun | Opensolaris | snv_41 |
| Sun | Opensolaris | snv_42 |
| Sun | Opensolaris | snv_43 |
| Sun | Opensolaris | snv_44 |
| Sun | Opensolaris | snv_45 |
| Sun | Opensolaris | snv_46 |
| Sun | Opensolaris | snv_47 |
| Sun | Opensolaris | snv_48 |
| Sun | Opensolaris | snv_49 |
Showing 50 of 111 affected configurations. See NVD for the full list.
References
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-120094-22-1Patch, Vendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-255308-1Patch, Vendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-120094-22-1Patch, Vendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-255308-1Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-1276?
How severe is CVE-2009-1276?
How do I fix CVE-2009-1276?
Are you affected by CVE-2009-1276?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
