CVE-2009-2489: Unspecified vulnerability in the utdmsession program in Sun Ray Server Software (SRSS) 4.0 allows local users to access
Summary
CVE-2009-2489 is a vulnerability in the utdmsession program within Sun Ray Server Software (SRSS) version 4.0 that allows local users (people with access to the same computer) to view and access the sessions of other users through unspecified methods. The exact technical details of how the vulnerability works are not publicly disclosed.
Solution / Mitigation
Patches are available from Sun at http://sunsolve.sun.com/search/document.do?assetkey=1-21-127553-06-1 and http://sunsolve.sun.com/search/document.do?assetkey=1-66-252226-1, though specific version numbers or patch details are not provided in this source.
Vulnerability Details
2.1
EPSS: 0.1%
Classification
Original source: https://nvd.nist.gov/vuln/detail/CVE-2009-2489
First tracked: February 15, 2026 at 08:46 PM
Classified by LLM (prompt v3) · confidence: 95%