CVE-2009-1933: Medium severity Sun OpenSolaris vulnerability
Kerberos in Sun Solaris 8, 9, and 10, and OpenSolaris before snv117, does not properly manage credential caches, which allows local users to access Kerberized NFS mount points and Kerberized NFS shares via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1933?
CVE-2009-1933 is considered a medium severity vulnerability due to its potential to allow unauthorized access to Kerberized NFS shares.
How do I fix CVE-2009-1933?
To fix CVE-2009-1933, update your Solaris systems to the latest version that patches the vulnerability.
Which Solaris versions are affected by CVE-2009-1933?
CVE-2009-1933 affects Solaris 8, 9, 10, and OpenSolaris versions prior to snv_117.
What type of vulnerability is CVE-2009-1933?
CVE-2009-1933 is a local privilege escalation vulnerability related to improper management of Kerberos credential caches.
Can local users exploit CVE-2009-1933?
Yes, local users can exploit CVE-2009-1933 to access Kerberized NFS mounts and shares.