(1) ipxchk and (2) ipxlink in SGI OS2 IRIX 6.3 does not properly clear the IFS environmental variable before executing system calls, which allows local users to execute arbitrary commands.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=89217373930054&w=2 | |
http://www.securityfocus.com/bid/70 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/71 | Patch Vendor Advisory |
Configurations
History
No history.
Information
Published : 1998-04-08 04:00
Updated : 2024-02-28 10:24
NVD link : CVE-1999-1501
Mitre link : CVE-1999-1501
CVE.ORG link : CVE-1999-1501
JSON object : View
Products Affected
sgi
- irix
CWE