CVE-2002-0652

xfsmd for IRIX 6.5 through 6.5.16 allows remote attackers to execute arbitrary code via shell metacharacters that are not properly filtered from several calls to the popen() function, such as export_fs().
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.2:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.5:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.6:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.7:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.8:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.9:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.10:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.11:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.12:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.13:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.14:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.15:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.16:*:*:*:*:*:*:*

History

20 Nov 2024, 23:39

Type Values Removed Values Added
References () ftp://patches.sgi.com/support/free/security/advisories/20020605-01-I - () ftp://patches.sgi.com/support/free/security/advisories/20020605-01-I -
References () ftp://patches.sgi.com/support/free/security/advisories/20020606-01-I - Patch, Vendor Advisory () ftp://patches.sgi.com/support/free/security/advisories/20020606-01-I - Patch, Vendor Advisory
References () http://marc.info/?l=bugtraq&m=102459162909825&w=2 - () http://marc.info/?l=bugtraq&m=102459162909825&w=2 -

Information

Published : 2002-07-03 04:00

Updated : 2024-11-20 23:39


NVD link : CVE-2002-0652

Mitre link : CVE-2002-0652

CVE.ORG link : CVE-2002-0652


JSON object : View

Products Affected

sgi

  • irix