CVE-2005-2925 – SGI IRIX 6.5.28 - 'runpriv' Design Error
https://notcve.org/view.php?id=CVE-2005-2925
runpriv in SGI IRIX allows local users to bypass intended restrictions and execute arbitrary commands via shell metacharacters in a command line for a privileged binary in /usr/sysadm/privbin. • https://www.exploit-db.com/exploits/1577 ftp://patches.sgi.com/support/free/security/advisories/20051001-01-P.asc http://secunia.com/advisories/17131 http://securitytracker.com/id?1015031 http://www.idefense.com/application/poi/display?id=312&type=vulnerabilities http://www.osvdb.org/19907 http://www.securityfocus.com/archive/1/427409/100/0/threaded http://www.securityfocus.com/bid/15055 https://exchange.xforce.ibmcloud.com/vulnerabilities/22561 •
CVE-2005-0464 – SGI IRIX 6.5.22 - GR_OSView Information Disclosure
https://notcve.org/view.php?id=CVE-2005-0464
gr_osview in SGI IRIX 6.5.22, and possibly other 6.5 versions, does not drop privileges when opening description files while in debug mode, which allows local users to read a line from arbitrary files via the -d and -D options, which prints the line as a formatting error. • https://www.exploit-db.com/exploits/25361 ftp://patches.sgi.com/support/free/security/advisories/20050402-01-P http://secunia.com/advisories/14875 http://securitytracker.com/id?1013662 http://www.idefense.com/application/poi/display?id=226&type=vulnerabilities http://www.osvdb.org/15351 •
CVE-2005-0465 – SGI IRIX 6.5.22 - GR_OSView Local Arbitrary File Overwrite
https://notcve.org/view.php?id=CVE-2005-0465
gr_osview in SGI IRIX does not drop privileges before opening files, which allows local users to overwrite arbitrary files via the -s option. • https://www.exploit-db.com/exploits/25362 ftp://patches.sgi.com/support/free/security/advisories/20050402-01-P http://secunia.com/advisories/14875 http://securitytracker.com/id?1013662 http://www.idefense.com/application/poi/display?id=225&type=vulnerabilities •
CVE-2004-1889
https://notcve.org/view.php?id=CVE-2004-1889
Unknown vulnerability in ftpd in SGI IRIX 6.5.20 through 6.5.23 allows remote attackers to cause a denial of service (hang) via a link failure with Microsoft Windows. • ftp://patches.sgi.com/support/free/security/advisories/20040401-01-P.asc http://www.securityfocus.com/bid/10037 https://exchange.xforce.ibmcloud.com/vulnerabilities/15722 •
CVE-2004-0139
https://notcve.org/view.php?id=CVE-2004-0139
Unknown vulnerability in the bsd.a kernel networking for SGI IRIX 6.5.22 through 6.5.25, and possibly earlier versions, in which "t_unbind changes t_bind's behavior," has unknown impact and attack vectors. Vulnerabilidad desconocida en la parte de red del kernel bsd.a de SGI IRIX 6.5.22 a 6.5.25,, y posiblemente versiones anteriores, en los que "t_unbind cambia el comportamiento de t_bind", con impacto y vectores de ataque desconocidos. • ftp://patches.sgi.com/support/free/security/advisories/20040905-01-P.asc http://secunia.com/advisories/12682 http://www.securityfocus.com/bid/11276 https://exchange.xforce.ibmcloud.com/vulnerabilities/17547 •