First published: Tue Sep 29 2009(Updated: )
Multiple unspecified vulnerabilities in Common Desktop Environment (CDE) in Sun Solaris 10, when Trusted Extensions is enabled, allow local users to execute arbitrary commands or bypass the Mandatory Access Control (MAC) policy via unknown vectors, related to a menu typo and the Style Manager.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris SPARC | =10.0 | |
Oracle Solaris SPARC | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-3468 has a moderate severity level due to its potential to allow local users to execute arbitrary commands.
To fix CVE-2009-3468, apply the recommended patches provided by Oracle for Solaris 10 systems.
CVE-2009-3468 affects local users of the Sun Solaris 10 operating system with Trusted Extensions enabled.
CVE-2009-3468 is caused by multiple unspecified vulnerabilities related to a menu typo and the Style Manager allowing command execution.
CVE-2009-3468 is not remotely exploitable as it requires local user access to the system.