Vulnerability Description
spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sgi | Irix | 6.2 |
References
- http://marc.info/?l=bugtraq&m=87602746719552&w=2
- http://www.securityfocus.com/bid/471ExploitPatchVendor Advisory
- http://marc.info/?l=bugtraq&m=87602746719552&w=2
- http://www.securityfocus.com/bid/471ExploitPatchVendor Advisory
FAQ
What is CVE-1999-1399?
CVE-1999-1399 is a vulnerability with a CVSS score of 7.2 (HIGH). spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed.
How severe is CVE-1999-1399?
CVE-1999-1399 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1399?
Check the references section above for vendor advisories and patch information. Affected products include: Sgi Irix.