Oracle Solaris System Administration (MOSC)

MOSC Banner

Solaris services running ttsession process

edited Feb 18, 2017 4:00AM in Oracle Solaris System Administration (MOSC) 2 commentsAnswered

A new vulnerability has been found that exploits ttsession process running on Solaris servers (versions 2.6, 2.7, 8, 9, 10) to gain root access. We need to understand which underlying Solaris system services can run ttsession process. The known service that runs is ttdbserver but there are some references on the internet to desktop services like dtlogin and CDE Calendar as well. Can someone please provide clarity on which services should be stopped and disabled (or any specific configuration parameters be changed) in order to remove any residual risk of exploits caused due to ttsession process? Thanks.

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center