Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspend has completed, which allows an attacker with physical access to input characters to the last active application from the keyboard for a short period after the system is restoring, which could lead to increased privileges.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 1998-07-16 04:00
Updated : 2018-10-30 16:26
NVD link : CVE-1999-1432
Mitre link : CVE-1999-1432
CVE.ORG link : CVE-1999-1432
JSON object : View
Products Affected
sun
- solaris
- sunos
CWE