Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspend has completed, which allows an attacker with physical access to input characters to the last active application from the keyboard for a short period after the system is restoring, which could lead to increased privileges.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 1998-07-15 21:00
Updated : 2018-10-30 09:26
NVD link : CVE-1999-1432
Mitre link : CVE-1999-1432
JSON object : View
CWE
Products Affected
sun
- solaris
- sunos