← Back

CVE-1999-1022

nvd nist
Published: Oct 2, 1994Modified: Apr 16, 2026

JSON object

Loading...
6.2
Vector
AV:L/AC:H/Au:N/C:C/I:C/A:C
Exploitability: 1.9 / Impact: 10.0
Source: NVD

Description

serial_ports administrative program in IRIX 4.x and 5.x trusts the user's PATH environmental variable to find and execute the ls program, which allows local users to gain root privileges via a Trojan horse ls program.

Affected (3)

Products: Sgi: Irix
1 product
Irix
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Sgi
Version 4
Version 5.2
Version 5.3

References (6)

Source: cve@mitre.org
ExploitVendor Advisory
Source: cve@mitre.org
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.