First published: Fri Dec 31 1999(Updated: )
IRIX soundplayer program allows local users to gain privileges by including shell metacharacters in a .wav file, which is executed via the midikeys program.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SGI IRIX | =6.2 | |
=6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0013 is considered to have a high severity due to the potential for local privilege escalation.
To fix CVE-2000-0013, users should ensure that the IRIX soundplayer program is updated to a version that eliminates the exploitation of shell metacharacters.
CVE-2000-0013 affects local users of SGI IRIX version 6.2 who can interact with the soundplayer program.
CVE-2000-0013 is a local privilege escalation vulnerability caused by improper handling of input in the soundplayer program.
While CVE-2000-0013 is an older vulnerability, systems still running IRIX 6.2 may still be at risk if not patched.