Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the RemoveSystemTour program.
References
Link | Resource |
---|---|
ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-96.08.SGI.systour.vul | Patch Third Party Advisory US Government Resource |
ftp://patches.sgi.com/support/free/security/advisories/19961101-01-I | Patch Vendor Advisory |
http://marc.info/?l=bugtraq&m=87602167420095&w=2 | |
http://www.iss.net/security_center/static/7456.php | |
http://www.securityfocus.com/bid/470 | Exploit Patch Vendor Advisory |
ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-96.08.SGI.systour.vul | Patch Third Party Advisory US Government Resource |
ftp://patches.sgi.com/support/free/security/advisories/19961101-01-I | Patch Vendor Advisory |
http://marc.info/?l=bugtraq&m=87602167420095&w=2 | |
http://www.iss.net/security_center/static/7456.php | |
http://www.securityfocus.com/bid/470 | Exploit Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:30
Type | Values Removed | Values Added |
---|---|---|
References | () ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-96.08.SGI.systour.vul - Patch, Third Party Advisory, US Government Resource | |
References | () ftp://patches.sgi.com/support/free/security/advisories/19961101-01-I - Patch, Vendor Advisory | |
References | () http://marc.info/?l=bugtraq&m=87602167420095&w=2 - | |
References | () http://www.iss.net/security_center/static/7456.php - | |
References | () http://www.securityfocus.com/bid/470 - Exploit, Patch, Vendor Advisory |
Information
Published : 1996-10-30 05:00
Updated : 2024-11-20 23:30
NVD link : CVE-1999-1384
Mitre link : CVE-1999-1384
CVE.ORG link : CVE-1999-1384
JSON object : View
Products Affected
sgi
- irix
CWE