CVE-2009-2491: The utaudiod daemon in Sun Ray Server Software (SRSS) 4.0, when Solaris Trusted Extensions is enabled, allows local user
infovulnerability
security
Summary
CVE-2009-2491 is a vulnerability in Sun Ray Server Software version 4.0 that affects the utaudiod daemon (a background service that handles audio) when Solaris Trusted Extensions is enabled. The flaw allows local users (people with access to the same computer) to view other users' sessions through resource leaks (memory or data not properly released), though the exact method is not publicly described.
Vulnerability Details
CVSS Score
4.4
EPSS (30-day exploit probability)
EPSS: 0.1%
Classification
Attack SophisticationModerate
Original source: https://nvd.nist.gov/vuln/detail/CVE-2009-2491
First tracked: February 15, 2026 at 08:46 PM
Classified by LLM (prompt v3) · confidence: 95%