2.1
CVSSv2

CVE-2005-0465

Published: 02/05/2005 Updated: 05/09/2008
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

gr_osview in SGI IRIX does not drop privileges before opening files, which allows local users to overwrite arbitrary files via the -s option.

Vulnerable Product Search on Vulmon Subscribe to Product

sgi irix 4.0.1t

sgi irix 4.0.2

sgi irix 4.0.3

sgi irix 4.0.4

sgi irix 5.0.1

sgi irix 5.1

sgi irix 5.1.1

sgi irix 5.2

sgi irix 5.3

sgi irix 6.5.10m

sgi irix 6.5.11

sgi irix 6.5.11f

sgi irix 6.5.11m

sgi irix 6.5.16f

sgi irix 6.5.16m

sgi irix 6.5.17

sgi irix 6.5.17f

sgi irix 6.5.21m

sgi irix 6.5.22

sgi irix 6.5.2f

sgi irix 6.5.2m

sgi irix 6.5.7

sgi irix 6.5.7f

sgi irix 6.5.7m

sgi irix 6.5.8

sgi irix 3.2

sgi irix 3.3

sgi irix 3.3.1

sgi irix 4.0.5_ipr

sgi irix 4.0.5a

sgi irix 4.0.5b

sgi irix 4.0.5e

sgi irix 6.1

sgi irix 6.2

sgi irix 6.3

sgi irix 6.4

sgi irix 6.5.13f

sgi irix 6.5.13m

sgi irix 6.5.14

sgi irix 6.5.14f

sgi irix 6.5.14m

sgi irix 6.5.19

sgi irix 6.5.19f

sgi irix 6.5.19m

sgi irix 6.5.2

sgi irix 6.5.4f

sgi irix 6.5.4m

sgi irix 6.5.5

sgi irix 6.5.5f

sgi irix 6.5_20

sgi irix 3.3.3

sgi irix 4.0.1

sgi irix 4.0.4b

sgi irix 4.0.5

sgi irix 4.0.5g

sgi irix 5.0

sgi irix 6.0

sgi irix 6.0.1

sgi irix 6.5

sgi irix 6.5.10

sgi irix 6.5.12f

sgi irix 6.5.13

sgi irix 6.5.15f

sgi irix 6.5.16

sgi irix 6.5.17m

sgi irix 6.5.18f

sgi irix 6.5.20f

sgi irix 6.5.21

sgi irix 6.5.3f

sgi irix 6.5.4

sgi irix 6.5.5m

sgi irix 6.5.6f

sgi irix 6.5.8m

sgi irix 6.5.9f

sgi irix 3.3.2

sgi irix 4.0

sgi irix 4.0.4t

sgi irix 4.0.5_iop

sgi irix 4.0.5f

sgi irix 4.0.5h

sgi irix 6.5.1

sgi irix 6.5.10f

sgi irix 6.5.12

sgi irix 6.5.12m

sgi irix 6.5.15

sgi irix 6.5.15m

sgi irix 6.5.18

sgi irix 6.5.18m

sgi irix 6.5.20

sgi irix 6.5.20m

sgi irix 6.5.21f

sgi irix 6.5.3

sgi irix 6.5.3m

sgi irix 6.5.6

sgi irix 6.5.6m

sgi irix 6.5.8f

sgi irix 6.5.9

sgi irix 6.5.9m

Exploits

source: wwwsecurityfocuscom/bid/13058/info A local file overwrite vulnerability affects SGI IRIX This issue is due to a failure of the affected utility to drop privileges prior to carrying out critical functionality An attacker may leverage this issue to cause the affected utility to write data to any file on the affected computer with ...