First published: Fri Oct 20 2000(Updated: )
inpview in InPerson in SGI IRIX 5.3 through IRIX 6.5.10 allows local users to gain privileges via a symlink attack on the .ilmpAAA temporary file.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SGI IRIX | =6.5.6 | |
SGI IRIX | =6.5.3f | |
SGI IRIX | =6.5.1 | |
SGI IRIX | =6.5.2m | |
SGI IRIX | =6.5.3 | |
SGI IRIX | =6.5.3m | |
SGI IRIX | =6.5.8 | |
SGI IRIX | =6.5.4 | |
SGI IRIX | =6.5 | |
SGI IRIX | =6.5.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0799 is considered to be a high severity vulnerability due to its local privilege escalation potential.
To mitigate CVE-2000-0799, ensure that the affected versions of InPerson are updated to a secure release that addresses this symlink vulnerability.
CVE-2000-0799 affects SGI IRIX systems from version 5.3 through to 6.5.10.
A symlink attack in CVE-2000-0799 involves exploiting the temporary file creation process to gain unauthorized privileges.
CVE-2000-0799 requires local access to the system, making it not exploitable remotely.