Vulnerability Description
gr_osview in SGI IRIX does not drop privileges before opening files, which allows local users to overwrite arbitrary files via the -s option.
CVSS Score
2.1
LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sgi | Irix | 3.2 |
References
- ftp://patches.sgi.com/support/free/security/advisories/20050402-01-PPatch
- http://secunia.com/advisories/14875
- http://securitytracker.com/id?1013662
- http://www.idefense.com/application/poi/display?id=225&type=vulnerabilitiesExploitPatchVendor Advisory
- ftp://patches.sgi.com/support/free/security/advisories/20050402-01-PPatch
- http://secunia.com/advisories/14875
- http://securitytracker.com/id?1013662
- http://www.idefense.com/application/poi/display?id=225&type=vulnerabilitiesExploitPatchVendor Advisory
FAQ
What is CVE-2005-0465?
CVE-2005-0465 is a vulnerability with a CVSS score of 2.1 (LOW). gr_osview in SGI IRIX does not drop privileges before opening files, which allows local users to overwrite arbitrary files via the -s option.
How severe is CVE-2005-0465?
CVE-2005-0465 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-0465?
Check the references section above for vendor advisories and patch information. Affected products include: Sgi Irix.