Vulnerabilities > SGI > Irix > 6.5.3

DATE CVE VULNERABILITY TITLE RISK
2001-12-06 CVE-2001-0801 Unspecified vulnerability in SGI Irix
lpstat in IRIX 6.5.13f and earlier allows local users to gain root privileges by specifying a Trojan Horse nettype shared library.
local
low complexity
sgi
7.2
2001-12-06 CVE-2001-0800 Remote Command Execution vulnerability in IRIX 'lpsched'
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
network
low complexity
sgi
critical
10.0
2001-12-06 CVE-2001-0799 Remote Security vulnerability in IRIX
Buffer overflows in lpsched in IRIX 6.5.13f and earlier allow remote attackers to execute arbitrary commands via a long argument.
network
low complexity
sgi
critical
10.0
2001-12-06 CVE-2001-0796 Denial of Service vulnerability in SGI IRIX IGMP Multicast Packet
SGI IRIX 6.5 through 6.5.12f and possibly earlier versions, and FreeBSD 3.0, allows remote attackers to cause a denial of service via a malformed IGMP multicast packet with a small response delay.
network
low complexity
sgi freebsd
5.0
2001-06-27 CVE-2001-0331 Buffer Overflow vulnerability in IRIX rpc.espd
Buffer overflow in Embedded Support Partner (ESP) daemon (rpc.espd) in IRIX 6.5.8 and earlier allows remote attackers to execute arbitrary commands.
network
low complexity
sgi
7.5
2001-06-18 CVE-2001-0249 Incorrect Calculation of Buffer Size vulnerability in multiple products
Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings.
network
low complexity
hp oracle sgi CWE-131
critical
9.8
2001-06-18 CVE-2001-0247 Buffer Overflow vulnerability in Multiple Vendor BSD ftpd glob()
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buffer as used in the glob functions glob2 and glob3.
network
low complexity
mit sgi freebsd netbsd openbsd
critical
10.0
2000-11-14 CVE-2000-0844 Permissions, Privileges, and Access Controls vulnerability in multiple products
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
10.0
2000-10-20 CVE-2000-0733 Unspecified vulnerability in SGI Irix
Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request.
network
low complexity
sgi
critical
10.0
2000-04-12 CVE-2000-0283 Unspecified vulnerability in SGI Irix
The default installation of IRIX Performance Copilot allows remote attackers to access sensitive system information via the pmcd daemon.
network
low complexity
sgi
6.4