6.2
CVSSv2

CVE-1999-1410

Published: 09/05/1997 Updated: 18/10/2016
CVSS v2 Base Score: 6.2 | Impact Score: 10 | Exploitability Score: 1.9
VMScore: 625
Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a symlink attack on the printers temporary file.

Vulnerable Product Search on Vulmon Subscribe to Product

sgi irix 5.1.1

sgi irix 5.2

sgi irix 5.0.1

sgi irix 5.1

sgi irix 5.3

sgi irix 6.0.1

sgi irix 5.0

sgi irix 6.1

sgi irix 6.2

Exploits

source: wwwsecurityfocuscom/bid/330/info SGI's IRIX 5x and 6x operating system include a utility called /usr/lib/netaddpr This program can be used by privledged users to add network printing devices to the system A race condition exists in this program that could allow any "privledged" user to obtain root access The netaddpr program ...