Filtered by vendor Sgi
Subscribe
Total
257 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-1999-0039 | 1 Sgi | 1 Irix | 2018-05-02 | 7.5 HIGH | N/A |
webdist CGI program (webdist.cgi) in SGI IRIX allows remote attackers to execute arbitrary commands via shell metacharacters in the distloc parameter. | |||||
CVE-1999-0025 | 1 Sgi | 1 Irix | 2018-05-02 | 7.2 HIGH | N/A |
root privileges via buffer overflow in df command on SGI IRIX systems. | |||||
CVE-2004-0418 | 5 Cvs, Gentoo, Openbsd and 2 more | 5 Cvs, Linux, Openbsd and 2 more | 2018-05-02 | 10.0 HIGH | N/A |
serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote attackers to perform an "out-of-bounds" write for a single byte to execute arbitrary code or modify critical program data. | |||||
CVE-1999-0149 | 1 Sgi | 1 Irix | 2018-05-02 | 7.5 HIGH | N/A |
The wrap CGI program in IRIX allows remote attackers to view arbitrary directory listings via a .. (dot dot) attack. | |||||
CVE-1999-0036 | 1 Sgi | 1 Irix | 2018-05-02 | 7.2 HIGH | N/A |
IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files. | |||||
CVE-2002-1318 | 3 Hp, Samba, Sgi | 3 Cifs-9000 Server, Samba, Irix | 2018-05-02 | 10.0 HIGH | N/A |
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an encrypted password that causes the overflow during decryption in which a DOS codepage string is converted to a little-endian UCS2 unicode string. | |||||
CVE-1999-0959 | 1 Sgi | 1 Irix | 2018-05-02 | 7.2 HIGH | N/A |
IRIX startmidi program allows local users to modify arbitrary files via a symlink attack. | |||||
CVE-1999-0108 | 1 Sgi | 1 Irix | 2018-05-02 | 7.2 HIGH | N/A |
The printers program in IRIX has a buffer overflow that gives root access to local users. | |||||
CVE-2004-0416 | 5 Cvs, Gentoo, Openbsd and 2 more | 5 Cvs, Linux, Openbsd and 2 more | 2018-05-02 | 10.0 HIGH | N/A |
Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code. | |||||
CVE-2004-0424 | 3 Linux, Sgi, Slackware | 3 Linux Kernel, Propack, Slackware Linux | 2018-05-02 | 7.2 HIGH | N/A |
Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option. | |||||
CVE-2004-0148 | 2 Sgi, Washington University | 2 Propack, Wu-ftpd | 2018-05-02 | 7.2 HIGH | N/A |
wu-ftpd 2.6.2 and earlier, with the restricted-gid option enabled, allows local users to bypass access restrictions by changing the permissions to prevent access to their home directory, which causes wu-ftpd to use the root directory instead. | |||||
CVE-2004-0414 | 5 Cvs, Gentoo, Openbsd and 2 more | 5 Cvs, Linux, Openbsd and 2 more | 2018-05-02 | 10.0 HIGH | N/A |
CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator from being used and may lead to a denial of service (crash), modification of critical program data, or arbitrary code execution. | |||||
CVE-1999-0059 | 1 Sgi | 1 Irix | 2018-05-02 | 7.1 HIGH | N/A |
IRIX fam service allows an attacker to obtain a list of all files on the server. | |||||
CVE-2004-0417 | 5 Cvs, Gentoo, Openbsd and 2 more | 5 Cvs, Linux, Openbsd and 2 more | 2018-05-02 | 5.0 MEDIUM | N/A |
Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to cause a server crash, which could cause temporary data to remain undeleted and consume disk space. | |||||
CVE-2003-0688 | 6 Compaq, Freebsd, Openbsd and 3 more | 6 Tru64, Freebsd, Openbsd and 3 more | 2018-05-02 | 5.0 MEDIUM | N/A |
The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data. | |||||
CVE-1999-1286 | 1 Sgi | 1 Irix | 2017-12-18 | 7.2 HIGH | N/A |
addnetpr in SGI IRIX 6.2 and earlier allows local users to modify arbitrary files and possibly gain root access via a symlink attack on a temporary file. | |||||
CVE-1999-1272 | 1 Sgi | 1 Irix | 2017-12-18 | 7.2 HIGH | N/A |
Buffer overflows in CDROM Confidence Test program (cdrom) allow local users to gain root privileges. | |||||
CVE-1999-1232 | 1 Sgi | 1 Irix | 2017-12-18 | 7.2 HIGH | N/A |
Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands via a modified PATH environment variable that points to a malicious cp program. | |||||
CVE-2002-2093 | 1 Sgi | 1 Irix | 2017-12-18 | 2.1 LOW | N/A |
The Video Control Panel on SGI O2/IRIX 6.5, when the Default Input is set to "Output Video", allows attackers to access a console session by running videoout then videoin. | |||||
CVE-1999-1022 | 1 Sgi | 1 Irix | 2017-12-18 | 6.2 MEDIUM | N/A |
serial_ports administrative program in IRIX 4.x and 5.x trusts the user's PATH environmental variable to find and execute the ls program, which allows local users to gain root privileges via a Trojan horse ls program. |