CVE-2002-2093: Low severity SGI IRIX vulnerability
Published Dec 31, 2002
·Updated
The Video Control Panel on SGI O2/IRIX 6.5, when the Default Input is set to "Output Video", allows attackers to access a console session by running videoout then videoin.
Affected Software
14 affected components
SGI IRIX=6.5.14f
SGI IRIX=6.5.13m
SGI IRIX=6.5.12
SGI IRIX=6.5.10m
SGI IRIX=6.5.13f
SGI IRIX=6.5.12f
SGI IRIX=6.5.14m
SGI IRIX=6.5.14
SGI IRIX=6.5.11f
SGI IRIX=6.5.11
SGI IRIX=6.5.11m
SGI IRIX=6.5.10f
SGI IRIX=6.5.13
SGI IRIX=6.5.12m
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Aug 5, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2093?
CVE-2002-2093 is considered to have a high severity as it allows unauthorized access to console sessions.
2
How do I fix CVE-2002-2093?
To fix CVE-2002-2093, ensure that the Default Input for the Video Control Panel is not set to 'Output Video'.
3
What systems are affected by CVE-2002-2093?
CVE-2002-2093 affects SGI O2 systems running IRIX versions 6.5.10 to 6.5.14.
4
Can CVE-2002-2093 lead to unauthorized access?
Yes, CVE-2002-2093 can lead to unauthorized access to the system via console sessions.
5
Is there a patch available for CVE-2002-2093?
There is currently no explicit patch mentioned for CVE-2002-2093, but mitigations involve changing configuration settings.