Vulnerabilities
Vulnerable Software
Sgi:  >> Irix  >> 6.5.19  Security Vulnerabilities
Heap-based buffer overflow in the name services daemon (nsd) in SGI IRIX 6.5.x through 6.5.21f, and possibly earlier versions, allows attackers to gain root privileges via the AUTH_UNIX gid list.
CVSS Score
10.0
EPSS Score
0.035
Published
2003-08-27
Unknown vulnerability in the libcpr library for the Checkpoint/Restart (cpr) system on SGI IRIX 6.5.21f and earlier allows local users to truncate or overwrite certain files.
CVSS Score
2.1
EPSS Score
0.001
Published
2003-08-27
Unknown vulnerability in SGI IRIX 6.5.x through 6.5.20, and possibly earlier versions, allows local users to cause a core dump in scheme and possibly gain privileges via certain environment variables, a different vulnerability than CVE-2001-0797 and CVE-1999-0028.
CVSS Score
7.2
EPSS Score
0.0
Published
2003-08-18
The IPv6 capability in IRIX 6.5.19 allows remote attackers to cause a denial of service (hang) in inetd via port scanning.
CVSS Score
5.0
EPSS Score
0.009
Published
2003-08-07
Unknown vulnerability in the IPv6 capability in IRIX 6.5.19 causes snoop to process packets as the root user, with unknown implications.
CVSS Score
10.0
EPSS Score
0.005
Published
2003-08-07
The LDAP name service (nsd) in IRIX 6.5.19 and earlier does not properly verify if the USERPASSWORD attribute has been provided by an LDAP server, which could allow attackers to log in without a password.
CVSS Score
9.8
EPSS Score
0.004
Published
2003-05-12
xfsdq in xfsdump does not create quota information files securely, which allows local users to gain root privileges.
CVSS Score
7.2
EPSS Score
0.001
Published
2003-05-05
Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391.
CVSS Score
7.5
EPSS Score
0.561
Published
2003-03-25
Unknown vulnerability in the AUTH_DES authentication for RPC in Solaris 2.5.1, 2.6, and 7, SGI IRIX 6.5 to 6.5.19f, and possibly other platforms, allows remote attackers to gain privileges.
CVSS Score
10.0
EPSS Score
0.053
Published
2002-12-27
Safe.pm 2.0.7 and earlier, when used in Perl 5.8.0 and earlier, may allow attackers to break out of safe compartments in (1) Safe::reval or (2) Safe::rdo using a redefined @_ variable, which is not reset between successive calls.
CVSS Score
4.6
EPSS Score
0.001
Published
2002-12-11


Contact Us

Shodan ® - All rights reserved