Solaris systems running the Xsun(1) Solaris X11 server are vulnerable to unprivileged local users that may be able to overwrite or create arbitrary files on the system or crash the Xsun(1) server due to vulnerabilities in the Xsun(1) server and Direct Graphics Access (DGA) mode. Successful exploitation may lead to root privileges on the system.
Classification
Attack Type:
Denial of Service
Impact:
Loss of Availability
Solution
Sun Microsystems has made the following patches available based on platform and version:
SPARC Platform
Solaris 2.6 with patch 105633-64 or later
Solaris 7 with patch 108376-44 or later
Solaris 8 with patch 108652-72 or later
Solaris 9 with patch 112785-25 or later
x86 Platform
Solaris 2.6 with patch 106248-49 or later
Solaris 7 with patch 108377-39 or later
Solaris 8 with patch 108653-61 or later
Solaris 9 with patch 112786-15 or later
This product uses the Daylife API but is not endorsed or certified by Daylife.
This section lists the latest news and blogs found via the daylife API (and for older items, the technorati API), which mention or otherwise discuss this vulnerability.