7.2
CVSSv2

CVE-1999-0025

Published: 16/07/1997 Updated: 03/05/2018
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

root privileges via buffer overflow in df command on SGI IRIX systems.

Vulnerable Product Search on Vulmon Subscribe to Product

sgi irix

Exploits

source: wwwsecurityfocuscom/bid/346/info A buffer overflow exists in IRIX 5x and 6x 'df' utility, from Silicon Graphics Inc By supplying a long argument to the -f option of df, a user can crash the df program By carefully crafting a buffer containing machine executable code, an attacker can run arbitrary commands as root /* /bin/df ...