(1) ipxchk and (2) ipxlink in SGI OS2 IRIX 6.3 does not properly clear the IFS environmental variable before executing system calls, which allows local users to execute arbitrary commands.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/70 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/71 | Patch Vendor Advisory |
http://marc.info/?l=bugtraq&m=89217373930054&w=2 |
Configurations
Information
Published : 1998-04-07 21:00
Updated : 2016-10-17 19:05
NVD link : CVE-1999-1501
Mitre link : CVE-1999-1501
JSON object : View
CWE
Products Affected
sgi
- irix