Vulnerabilities > SGI > Irix > 6.2

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0465 Unspecified vulnerability in SGI Irix
gr_osview in SGI IRIX does not drop privileges before opening files, which allows local users to overwrite arbitrary files via the -s option.
local
low complexity
sgi
2.1
2004-08-18 CVE-2004-0134 Privilege Escalation vulnerability in IRIX Checkpoint and Restart libcpr Library Loading
cpr (libcpr) in SGI IRIX before 6.5.25 allows local users to gain privileges by loading a user provided library while restarting the checkpointed process.
local
low complexity
sgi
7.2
2004-08-06 CVE-2004-0135 Unspecified vulnerability in SGI Irix
The syssgi SGI_IOPROBE system call in IRIX 6.5.20 through 6.5.24 allows local users to gain privileges by reading and writing to kernel memory.
local
low complexity
sgi
7.2
2003-08-27 CVE-2003-0679 Unspecified vulnerability in SGI Irix
Unknown vulnerability in the libcpr library for the Checkpoint/Restart (cpr) system on SGI IRIX 6.5.21f and earlier allows local users to truncate or overwrite certain files.
local
low complexity
sgi
2.1
2003-05-12 CVE-2003-0174 Origin Validation Error vulnerability in SGI Irix
The LDAP name service (nsd) in IRIX 6.5.19 and earlier does not properly verify if the USERPASSWORD attribute has been provided by an LDAP server, which could allow attackers to log in without a password.
network
low complexity
sgi CWE-346
critical
9.8
2003-03-03 CVE-2003-0064 The dtterm terminal emulator allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g.
network
low complexity
sgi hp ibm sun
7.5
2002-07-23 CVE-2002-0678 Symbolic Link vulnerability in Multiple Vendor CDE ToolTalk Database Server
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
local
low complexity
caldera xi-graphics sgi compaq hp ibm sun
7.2
2002-07-23 CVE-2002-0677 CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.
network
low complexity
caldera xi-graphics sgi compaq hp ibm sun
7.5
2002-07-03 CVE-2002-0359 Authentication vulnerability in SGI IRIX rpc.xfsmd Weak
xfsmd for IRIX 6.5 through 6.5.16 uses weak authentication, which allows remote attackers to call dangerous RPC functions, including those that can mount or unmount xfs file systems, to gain root privileges.
network
low complexity
sgi
critical
10.0
2002-05-16 CVE-2002-0173 Buffer Overflow vulnerability in SGI IRIX CPR
Buffer overflow in cpr for the eoe.sw.cpr SGI Checkpoint-Restart Software package on SGI IRIX 6.5.10 and earlier may allow local users to gain root privileges.
local
low complexity
sgi
7.2