CVE-2003-0174: Critical severity SGI IRIX vulnerability
The LDAP name service (nsd) in IRIX 6.5.19 and earlier does not properly verify if the USERPASSWORD attribute has been provided by an LDAP server, which could allow attackers to log in without a password.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0174?
CVE-2003-0174 is considered a high severity vulnerability due to the potential for unauthorized access without a password.
How do I fix CVE-2003-0174?
The mitigation for CVE-2003-0174 involves upgrading to an unaffected version of IRIX that properly verifies the USERPASSWORD attribute.
Which versions of IRIX are affected by CVE-2003-0174?
CVE-2003-0174 affects IRIX versions 6.5.19 and earlier, including various specific subversions.
What types of attacks could exploit CVE-2003-0174?
Exploitation of CVE-2003-0174 could facilitate unauthorized logins, potentially leading to data breaches or further system compromise.
Is CVE-2003-0174 a common vulnerability?
CVE-2003-0174 is a known vulnerability that has been addressed and is less commonly encountered today, but it remains relevant for systems running vulnerable versions.