CVE-2009-2282

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/07/2009
Last modified:
09/04/2025

Description

The Virtual Network Terminal Server daemon (vntsd) for Logical Domains (aka LDoms) in Sun Solaris 10, and OpenSolaris snv_41 through snv_108, on SPARC platforms does not check authorization for guest console access, which allows local control-domain users to gain guest-domain privileges via unknown vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:oracle:opensolaris:*:*:*:*:*:*:sparc:* snv_41 (including) snv_108 (including)
cpe:2.3:o:oracle:solaris:10:*:*:*:*:*:sparc:*