SgiCVEs & Vulnerabilities

259 CVEs affecting Sgi products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.

Most Affected Products

irix 2,246propack 86performance co-pilot 81samba 15mailx 9license oeo 3freeware 3mipspro compilers 2
CVE-1999-1492HIGH

Vulnerability in (1) diskperf and (2) diskalign in IRIX 6.4 allows local attacker to create arbitrary root owned files, leading to root privileges.

27 May 1998
7.2
CVSS
CVE-1999-0108HIGHpoc

The printers program in IRIX has a buffer overflow that gives root access to local users.

1 May 1998
7.2
CVSS
CVE-1999-1040HIGH

Vulnerabilities in (1) ipxchk and (2) ipxlink in NetWare Client 1.0 on IRIX 6.3 and 6.4 allows local users to gain root access via a modified IFS environmental variable.

8 Apr 1998
7.2
CVSS
CVE-1999-1501MEDIUM

(1) ipxchk and (2) ipxlink in SGI OS2 IRIX 6.3 does not properly clear the IFS environmental variable before executing system calls, which allows local users to execute arbitrary commands.

8 Apr 1998
4.6
CVSS
CVE-1999-1114HIGHpoc

Buffer overflow in Korn Shell (ksh) suid_exec program on IRIX 6.x and earlier, and possibly other operating systems, allows local users to gain root privileges.

8 Apr 1998
7.2
CVSS
CVE-1999-0009CRITICALpoc

Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.

8 Apr 1998
10.0
CVSS
CVE-1999-0270MEDIUM

Directory traversal vulnerability in pfdispaly.cgi program (sometimes referred to as "pfdisplay") for SGI's Performer API Search Tool (performer_tools) allows remote attackers to read arbitrary files.

3 Apr 1998
5.0
CVSS
CVE-1999-1183HIGH

System Manager sysmgr GUI in SGI IRIX 6.4 and 6.3 allows remote attackers to execute commands by providing a trojan horse (1) runtask or (2) runexec descriptor file, which is used to execute a System Manager Task when the user's Mailcap entry supports the x-sgi-task or x-sgi-exec type.

2 Apr 1998
7.6
CVSS
CVE-1999-0003CRITICALpoc

Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).

1 Apr 1998
10.0
CVSS
CVE-1999-0960HIGHpoc

IRIX cdplayer allows local users to create directories in arbitrary locations via a command line option.

20 Mar 1998
7.2
CVSS
CVE-1999-1272HIGH

Buffer overflows in CDROM Confidence Test program (cdrom) allow local users to gain root privileges.

1 Mar 1998
7.2
CVSS
CVE-1999-0125MEDIUMpoc

Buffer overflow in SGI IRIX mailx program.

25 Jan 1998
4.6
CVSS
CVE-1999-0018CRITICALpoc

Buffer overflow in statd allows root privileges.

5 Dec 1997
10.0
CVSS
CVE-1999-0327LOW

SGI syserr program allows local users to corrupt files.

1 Nov 1997
2.1
CVSS
CVE-1999-0328HIGHpoc

SGI permissions program allows local users to gain root privileges.

1 Nov 1997
7.2
CVSS
CVE-1999-1131MEDIUM

Buffer overflow in OSF Distributed Computing Environment (DCE) security demon (secd) in IRIX 6.4 and earlier allows attackers to cause a denial of service via a long principal, group, or organization.

24 Oct 1997
5.0
CVSS
CVE-1999-1214LOW

The asynchronous I/O facility in 4.4 BSD kernel does not check user credentials when setting the recipient of I/O notification, which allows local users to cause a denial of service by using certain ioctl and fcntl calls to cause the signal to be sent to an arbitrary process ID.

15 Sep 1997
2.1
CVSS
CVE-1999-0148HIGHpoc

The handler CGI program in IRIX allows arbitrary command execution.

1 Sep 1997
7.5
CVSS
CVE-1999-1399HIGHpoc

spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed.

20 Aug 1997
7.2
CVSS
CVE-1999-0524MEDIUM

ICMP information such as (1) netmask and (2) timestamp is allowed from arbitrary hosts.

1 Aug 1997
4.0
CVSS
CVE-1999-0028HIGH

root privileges via buffer overflow in login/scheme command on SGI IRIX systems.

16 Jul 1997
7.2
CVSS
CVE-1999-0029HIGHpoc

root privileges via buffer overflow in ordist command on SGI IRIX systems.

16 Jul 1997
8.4
CVSS
CVE-1999-0025HIGHpoc

root privileges via buffer overflow in df command on SGI IRIX systems.

16 Jul 1997
7.2
CVSS
CVE-1999-0026MEDIUMpoc

root privileges via buffer overflow in pset command on SGI IRIX systems.

16 Jul 1997
4.6
CVSS
CVE-1999-0027HIGHpoc

root privileges via buffer overflow in eject command on SGI IRIX systems.

16 Jul 1997
7.2
CVSS
CVE-1999-0030HIGHpoc

root privileges via buffer overflow in xlock command on SGI IRIX systems.

16 Jul 1997
7.2
CVSS
CVE-1999-0059HIGH

IRIX fam service allows an attacker to obtain a list of all files on the server.

14 Jul 1997
7.3
CVSS
CVE-1999-0195MEDIUM

Denial of service in RPC portmapper allows attackers to register or unregister RPC services or spoof RPC services using a spoofed source IP address such as 127.0.0.1.

1 Jul 1997
5.0
CVSS
CVE-1999-0033HIGH

Command execution in Sun systems via buffer overflow in the at program.

12 Jun 1997
7.2
CVSS
CVE-1999-0083MEDIUM

getcwd() file descriptor leak in FTP.

11 Jun 1997
5.0
CVSS
CVE-1999-0035MEDIUM

Race condition in signal handling routine in ftpd, allowing read/write arbitrary files.

29 May 1997
5.4
CVSS
CVE-1999-0034HIGHpoc

Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.

29 May 1997
7.2
CVSS
CVE-1999-1143HIGH

Vulnerability in runtime linker program rld in SGI IRIX 6.x and earlier allows local users to gain privileges via setuid and setgid programs.

28 May 1997
7.2
CVSS
CVE-1999-0036HIGHpoc

IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files.

26 May 1997
8.4
CVSS
CVE-1999-1232HIGH

Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands via a modified PATH environment variable that points to a malicious cp program.

16 May 1997
7.2
CVSS
CVE-1999-1410MEDIUMpoc

addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a symlink attack on the printers temporary file.

9 May 1997
6.2
CVSS
CVE-1999-1286HIGHpoc

addnetpr in SGI IRIX 6.2 and earlier allows local users to modify arbitrary files and possibly gain root access via a symlink attack on a temporary file.

9 May 1997
7.2
CVSS
CVE-1999-1067MEDIUM

SGI MachineInfo CGI program, installed by default on some web servers, prints potentially sensitive system status information, which could be used by remote attackers for information gathering activities.

7 May 1997
5.0
CVSS
CVE-1999-1461HIGHpoc

inpview in InPerson on IRIX 5.3 through IRIX 6.5.10 trusts the PATH environmental variable to find and execute the ttsession program, which allows local users to obtain root access by modifying the PATH to point to a Trojan horse ttsession program.

7 May 1997
7.2
CVSS
CVE-1999-1398MEDIUMpoc

Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack.

7 May 1997
6.2
CVSS
CVE-1999-0039HIGHpoc

webdist CGI program (webdist.cgi) in SGI IRIX allows remote attackers to execute arbitrary commands via shell metacharacters in the distloc parameter.

6 May 1997
7.3
CVSS
CVE-1999-1116HIGH

Vulnerability in runpriv in Indigo Magic System Administration subsystem of SGI IRIX 6.3 and 6.4 allows local users to gain root privileges.

3 May 1997
7.2
CVSS
CVE-1999-0040HIGHpoc

Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.

1 May 1997
7.2
CVSS
CVE-1999-0038HIGHpoc

Buffer overflow in xlock program allows local users to execute commands as root.

26 Apr 1997
8.4
CVSS
CVE-1999-0149HIGHpoc

The wrap CGI program in IRIX allows remote attackers to view arbitrary directory listings via a .. (dot dot) attack.

19 Apr 1997
7.5
CVSS
CVE-1999-0959HIGHpoc

IRIX startmidi program allows local users to modify arbitrary files via a symlink attack.

1 Feb 1997
7.2
CVSS
CVE-1999-0049HIGH

Csetup under IRIX allows arbitrary file creation or overwriting.

8 Jan 1997
7.2
CVSS
CVE-1999-0051HIGHpoc

Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX.

6 Jan 1997
7.2
CVSS