CVE-1999-1384
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD
Description
Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the RemoveSystemTour program.
Affected (14)
References (10)
ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-96.08.SGI.systour.vul (unsafe URL)
Source: cve@mitre.org
PatchThird Party AdvisoryUS Government Resource
ftp://patches.sgi.com/support/free/security/advisories/19961101-01-I (unsafe URL)
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Source: cve@mitre.org
ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-96.08.SGI.systour.vul (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource
ftp://patches.sgi.com/support/free/security/advisories/19961101-01-I (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory
Timeline
No history available yet.