Vulnerabilities > SGI

DATE CVE VULNERABILITY TITLE RISK
2003-12-15 CVE-2003-0795 Improper Input Validation vulnerability in multiple products
The vty layer in Quagga before 0.96.4, and Zebra 0.93b and earlier, does not verify that sub-negotiation is taking place when processing the SE marker, which allows remote attackers to cause a denial of service (crash) via a malformed telnet command to the telnet CLI port, which may trigger a null dereference.
network
low complexity
gnu quagga sgi CWE-20
5.0
2003-11-03 CVE-2003-0683 Unspecified vulnerability in SGI Irix 6.5.21F/6.5.21M
NFS in SGI 6.5.21m and 6.5.21f does not perform access checks in certain configurations when an /etc/exports entry uses wildcards without any hostnames or groups, which could allow attackers to bypass intended restrictions.
network
low complexity
sgi
7.5
2003-10-20 CVE-2003-0688 The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.
network
low complexity
redhat sendmail sgi compaq freebsd openbsd
5.0
2003-10-06 CVE-2003-0694 The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.
network
low complexity
sendmail sgi apple compaq freebsd gentoo hp ibm netbsd sun turbolinux
critical
10.0
2003-10-06 CVE-2003-0680 Unspecified vulnerability in SGI Irix 6.5.21/6.5.21F/6.5.21M
Unknown vulnerability in NFS for SGI IRIX 6.5.21 and earlier may allow an NFS client to bypass read-only restrictions.
network
low complexity
sgi
7.5
2003-08-27 CVE-2003-0679 Unspecified vulnerability in SGI Irix
Unknown vulnerability in the libcpr library for the Checkpoint/Restart (cpr) system on SGI IRIX 6.5.21f and earlier allows local users to truncate or overwrite certain files.
local
low complexity
sgi
2.1
2003-08-27 CVE-2003-0576 Unspecified vulnerability in SGI Irix
Unknown vulnerability in the NFS daemon (nfsd) in SGI IRIX 6.5.19f and earlier allows remote attackers to cause a denial of service (kernel panic) via certain packets that cause XDR decoding errors, a different vulnerability than CVE-2003-0619.
network
low complexity
sgi
5.0
2003-08-27 CVE-2003-0575 Privilege Escalation vulnerability in SGI IRIX NSD AUTH_UNIX GID List
Heap-based buffer overflow in the name services daemon (nsd) in SGI IRIX 6.5.x through 6.5.21f, and possibly earlier versions, allows attackers to gain root privileges via the AUTH_UNIX gid list.
network
low complexity
sgi
critical
10.0
2003-08-18 CVE-2003-0574 Unspecified vulnerability in SGI Irix
Unknown vulnerability in SGI IRIX 6.5.x through 6.5.20, and possibly earlier versions, allows local users to cause a core dump in scheme and possibly gain privileges via certain environment variables, a different vulnerability than CVE-2001-0797 and CVE-1999-0028.
local
low complexity
sgi
7.2
2003-08-18 CVE-2003-0573 Remote Security vulnerability in IRIX
The DNS callbacks in nsd in SGI IRIX 6.5.x through 6.5.20f, and possibly earlier versions, do not perform sufficient sanity checking, with unknown impact.
network
low complexity
sgi
5.0