First published: Thu May 16 2002(Updated: )
xkas in Xinet K-AShare 0.011.01 for IRIX allows local users to read arbitrary files via a symlink attack on the VOLICON file, which is copied to the .HSicon file in a shared directory.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SGI IRIX | =6.5.6 | |
SGI IRIX | =6.5.1 | |
SGI IRIX | =6.5.10 | |
SGI IRIX | =6.5.12 | |
SGI IRIX | =6.5.9 | |
SGI IRIX | =6.5.15 | |
SGI IRIX | =6.5.3 | |
SGI IRIX | =6.5.14 | |
SGI IRIX | =6.5.8 | |
SGI IRIX | =6.5.5 | |
SGI IRIX | =6.5.4 | |
Xinet K-AShare | =11.01 | |
SGI IRIX | =6.5.11 | |
SGI IRIX | =6.5.2 | |
SGI IRIX | =6.5 | |
SGI IRIX | =6.5.7 | |
SGI IRIX | =6.5.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0213 has been classified as a medium severity vulnerability.
To fix CVE-2002-0213, you should apply the latest updates or patches provided by SGI for affected versions of IRIX or Xinet K-AShare.
CVE-2002-0213 affects multiple versions of SGI IRIX 6.5.x and Xinet K-AShare 11.01.
CVE-2002-0213 is a symbolic link attack vulnerability that allows unauthorized file access.
Local users on systems running the affected versions of SGI IRIX and Xinet K-AShare are impacted by CVE-2002-0213.