7.2
CVSSv2

CVE-1999-0044

Published: 03/12/1996 Updated: 09/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.

Vulnerable Product Search on Vulmon Subscribe to Product

sgi irix 5.1

sgi irix 5.1.1

sgi irix 5.2

sgi irix 5.3

sgi irix 6.0

sgi irix 6.1

sgi irix 6.0.1

sgi irix 6.2

Exploits

source: wwwsecurityfocuscom/bid/355/info A number of vulnerabilities exist in the fsdump program included with Silicon Graphics Inc's IRIX operating system Each of these holes can be used to obtain root privlilege Variant 1: irix% /var/rfindd/fsdump -L/etc/passwd -F/tmp/dump / (count to three, and hit ctrl-c) irix% ls -la /etc/passwd ...